Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Traffic beobachten - Verständnisfrage

Hi,

 

wie kann man den Traffic einer IP genau beobachten?  

 

Ich gehe immer auf Live-Protokoll -> Filter -> Firewall -> gebe dort die IP-Adresse ein, drücke Enter und es passiert nichts :-(

Kann mir jemand helfen?

 



This thread was automatically locked due to age.
Parents Reply
  • OK, two different approaches, but neither will see traffic that doesn't transit the UTM:

    1. Create a firewall rule with logging enabled at the top of the rule list like '{10.99.10.10} -> Any -> Any : Allow'.  You will then see the outbound traffic in the live log.
    2. Use tcpdump at the command line to see both incoming and outgoing packets.  If you're unfamiliar with it, check out http://danielmiessler.com/study/tcpdump/.

    MfG - Bob (Bitte auf Deutsch weiterhin.)

Children