[mdlug] who's using a port on a iptables firewall

Mark Thuemmel ldaphelp at thuemmel.com
Wed Jan 18 21:37:08 EST 2012


On 01/18/2012 08:25 PM, Robert Citek wrote:
> On Wed, Jan 18, 2012 at 7:13 PM, Mark Thuemmel<ldaphelp at thuemmel.com>  wrote:
>> i was thinking piping the output from a network capture through some
>> kind of grep maybe.
>>
>> Anyone have a way to list the traffic flowing though iptables?
>
> I suspect that you may be looking for IP connection tracking.
>
> Try if either of these commands give you output:
>
> head /proc/net/ip_conntrack
> head /proc/net/nf_conntrack
>
> For more info:
>
> http://conntrack-tools.netfilter.org/
>
> Good luck and let us know how things go.
>
> Regards,
> - Robert


Awesome!  I tried it while ssh'd to the box and it reports me.

I'll grep /proc/net/ip_conntrack tomorrow when the users are working.

Thanks!



More information about the mdlug mailing list