[PVE-User] Network Tap?

rupi rupi at rantanplan.org
Tue Jun 22 17:28:01 CEST 2010


hi,

i am not aware of any 'real' port mirror setup, but you can do something
like
tcpdump -s 0 -i vminterface -w fifo
and socat to get this on an other machine.

if you simply want to do traffic accounting i would use iptables counters.
this counters are overflow safe and accurate. simply add a rule in 
your firewall that matches the machine and don't do anything else.

/r

-- 
 http://rantanplan.org/~rupi/ || encrypt email || use free software
 fingerprint = 9639 0ABC AD2F 155F C96C  FC78 3CFE 82C0 0AF9 AE3A
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 197 bytes
Desc: Digital signature
URL: <http://lists.proxmox.com/pipermail/pve-user/attachments/20100622/81c11b33/attachment.sig>


More information about the pve-user mailing list