Ad Widget

Collapse

Monitoring specific traffic with script

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • sahoal
    Junior Member
    • Feb 2010
    • 2

    #1

    Monitoring specific traffic with script

    I´m using your "Zabbix Packet Capture Agent" and it´s working fine to me right now. The only problem that i´m facing now is that I don´t know how to implement advanced filters.

    For example:
    I have a host with only 1 ethernet card inside my DMZ, and it receive a lot of packages from the internet, and some others from my local network. And the question is:

    How can I monitor only the packages that came from Internet (and ignore the others that came from 192.168.1.0)?

    thanks in advance!
  • sahoal
    Junior Member
    • Feb 2010
    • 2

    #2
    the file zabbix_script.txt contains the script that i´m using
    Attached Files

    Comment

    • nelsonab
      Senior Member
      Zabbix Certified SpecialistZabbix Certified Professional
      • Sep 2006
      • 1233

      #3
      Thanks for the feedback!

      I'll try and add the agent to the subversion repository on red-tux.net and add a filter type relating to what you are looking for. It may involve some configuration settings on the client, not sure yet.
      RHCE, author of zbxapi
      Ansible, the missing piece (Zabconf 2017): https://www.youtube.com/watch?v=R5T9NidjjDE
      Zabbix and SNMP on Linux (Zabconf 2015): https://www.youtube.com/watch?v=98PEHpLFVHM

      Comment

      Working...