This shows you the differences between two versions of the page.
| Both sides previous revision Previous revision Next revision | Previous revision | ||
|
пакет_flow-tools [2011/11/30 10:52] 127.0.0.1 внешнее изменение |
пакет_flow-tools [2020/04/23 14:10] (current) val |
||
|---|---|---|---|
| Line 1: | Line 1: | ||
| ====== Пакет flow-tools ====== | ====== Пакет flow-tools ====== | ||
| + | * [[https://sourceforge.net/projects/flowviewer/|FlowViewer]] | ||
| ===== Установка, настройка, запуск ===== | ===== Установка, настройка, запуск ===== | ||
| - | |||
| - | ==== FreeBSD ===== | ||
| - | <code> | ||
| - | [server:~] # pkg_add -r flow-tools | ||
| - | |||
| - | [server:~] # rehash | ||
| - | |||
| - | [server:~] # grep flow /etc/rc.conf | ||
| - | flow_capture_enable=yes | ||
| - | flow_capture_port=4444 | ||
| - | |||
| - | [server:~] # /usr/local/etc/rc.d/flow_capture start | ||
| - | </code> | ||
| ==== Debian/Ubuntu ==== | ==== Debian/Ubuntu ==== | ||
| <code> | <code> | ||
| - | root@server:~# apt-get install flow-tools | + | root@server:~# apt install flow-tools |
| - | root@server:~# cat /etc/flow-tools/flow-capture.conf | + | root@server:~# cat /etc/flow-tools/flow-capture.conf |
| - | -w /var/db/flows 0/0/4444 | + | </code><code> |
| + | -w /var/flows 0/0/2055 | ||
| + | </code><code> | ||
| + | root@server:~# mkdir /var/flows | ||
| - | root@server:~# mkdir -p /var/db/flows | + | root@server:~# service flow-capture restart |
| - | root@server:~# /etc/init.d/flow-capture start | + | |
| - | </code> | + | |
| - | + | ||
| - | ==== CentOS/SL ==== | + | |
| - | <code> | + | |
| - | [root@server ~]# yum install postgresql-libs | + | |
| - | + | ||
| - | [root@server ~]# yum install mysql | + | |
| - | + | ||
| - | [root@server ~]# wget http://centos.alt.ru/pub/flow-tools/RHEL/RPMS/i386/flow-tools-0.68.5-1.el5.i386.rpm | + | |
| - | + | ||
| - | [root@server ~]# rpm -i flow-tools-0.68.5-1.el5.i386.rpm | + | |
| </code> | </code> | ||
| Line 41: | Line 20: | ||
| Для скорейшего преобразования временного файла в постоянный можно перезапустить сервис | Для скорейшего преобразования временного файла в постоянный можно перезапустить сервис | ||
| <code> | <code> | ||
| - | server# flow-cat /var/db/flows/ | flow-print | + | server# flow-cat /var/flows/ | flow-print | less |
| </code> | </code> | ||
| или более подробно, включая дату начала и окончания потоков | или более подробно, включая дату начала и окончания потоков | ||
| <code> | <code> | ||
| - | server# flow-cat /var/db/flows/ | flow-print -f5 | + | server# flow-cat /var/flows/ | flow-print -f5 |
| + | </code> | ||
| - | server# flow-cat -t "25/2/2012 00:00:00" -T "25/2/2012 23:59:59" /var/db/flows/ | flow-print | ||
| - | </code> | ||
| - | (время считается местное) | ||