Re: native recording of all network connections on freebsd

From: Juraj Lutter <otis_at_FreeBSD.org>
Date: Wed, 28 Dec 2022 14:52:54 UTC

> On 28 Dec 2022, at 15:28, Sami Halabi <sodynet1@gmail.com> wrote:
> 
> using firewall ike ipfw with rule to log any to any would be a start.. for advanced use, stateful fw so You can log start of connections

I would also consider using ng_netflow(4) with, for example, nfsend or even
logstash with netflow input module (and stored into elastic indexes),
visualized by kibana or other tools.


—
Juraj Lutter
otis@FreeBSD.org