This shows you the differences between two versions of the page.
Both sides previous revision Previous revision Next revision | Previous revision | ||
пакет_flow-tools [2010/11/18 15:10] val |
пакет_flow-tools [2020/04/23 14:10] (current) val |
||
---|---|---|---|
Line 1: | Line 1: | ||
====== Пакет flow-tools ====== | ====== Пакет flow-tools ====== | ||
+ | * [[https://sourceforge.net/projects/flowviewer/|FlowViewer]] | ||
===== Установка, настройка, запуск ===== | ===== Установка, настройка, запуск ===== | ||
- | ==== FreeBSD ===== | + | ==== Debian/Ubuntu ==== |
<code> | <code> | ||
- | [server:~] # pkg_add -r flow-tools | + | root@server:~# apt install flow-tools |
- | [server:~] # grep flow /etc/rc.conf | + | root@server:~# cat /etc/flow-tools/flow-capture.conf |
- | flow_capture_enable=yes | + | </code><code> |
- | flow_capture_port=4444 | + | -w /var/flows 0/0/2055 |
+ | </code><code> | ||
+ | root@server:~# mkdir /var/flows | ||
- | [server:~] # /usr/local/etc/rc.d/flow_capture start | + | root@server:~# service flow-capture restart |
- | </code> | + | |
- | + | ||
- | ==== Ubuntu ==== | + | |
- | <code> | + | |
- | root@server:~# apt-get install flow-tools | + | |
- | + | ||
- | root@server:~# cat /etc/flow-tools/flow-capture.conf | + | |
- | -w /var/db/flows 0/0/4444 | + | |
- | + | ||
- | root@server:~# mkdir -p /var/db/flows | + | |
- | root@server:~# /etc/init.d/flow-capture start | + | |
</code> | </code> | ||
Line 28: | Line 20: | ||
Для скорейшего преобразования временного файла в постоянный можно перезапустить сервис | Для скорейшего преобразования временного файла в постоянный можно перезапустить сервис | ||
<code> | <code> | ||
- | server# flow-cat /var/db/flows/ | flow-print | + | server# flow-cat /var/flows/ | flow-print | less |
- | </code><code> | + | </code> |
или более подробно, включая дату начала и окончания потоков | или более подробно, включая дату начала и окончания потоков | ||
- | </code><code> | + | <code> |
- | server# flow-cat /var/db/flows/ | flow-print -f5 | + | server# flow-cat /var/flows/ | flow-print -f5 |
+ | </code> | ||
- | server# flow-cat -t "5/2/2012 00:00:00" -T "5/2/2012 23:59:59" /var/db/flows/ | flow-print | ||
- | </code> | ||
- | (время считается местное) |