Accounting of sniffed traffic

Sebastian Zander zander@fokus.gmd.de
Mon, 20 Aug 2001 10:29:18 +0200


Hi Gaston,

a few months ago i wrote a patch which implements a hook for NetFilter which gets
all promiscuous packets on an interface. Its a patch-o-matic patch. I haven't tested 
it with kernel versions > 2.4.4. You can download it from:
http://www.fokus.fhg.de/usr/sebastian.zander/private/meter-table-patch.tgz

Regards, 

Sebastian

Gaston Franco schrieb:
> 
> Hi.
> IŽve got a situation here in which IŽd like to have a machine with its ethernet
> interface in promiscuous mode in order to catch all the traffic.
> IŽd like to know if there is a way that iptables can see this traffic in order
> to make some kind of accounting of the packets that are seen on the network.
> 
> IŽd like this in order to use IPAC but without running this software on my gateway.
> Does anybody know how to make this happen with IPTABLES or does anybody know about another
> tool that performs like this?
> 
> TIA,

-- 
Sebastian Zander                         E-mail: zander@fokus.gmd.de
GMD FOKUS / Global Networking (GloNe)    Tel: +49-30-3463-7287
Kaiserin-Augusta-Allee 31                Fax: +49-30-3463-8287 
D-10589 Berlin, Germany                  www.fokus.gmd.de/usr/sebastian.zander