Saving pf state for accounting

Gunther Mayer gunther.mayer at googlemail.com
Thu Jan 29 05:20:56 PST 2009


Hi guys,

My server uses up tons of bandwidth every month and I'd like to start 
recording what traffic volumes my different services chew up on a 
monthly basis. My firewall utility of choice is pf and I've recently 
come across its neat "label" facility so that I can do a simple "pfctl 
-sl" to get the latest readings.

That's all fair and well but I lose all that lovely accounting 
information upon reboot so how do I go about saving this? I've googled 
quite a bit to look for a solution but have found nothing useful so far, 
just unanswered posts in the past.

 From what I can tell so far I'd have to write a custom rc script which 
redirects "pfctl -sl" into some sort of logfile which then may be 
retrieved at a later stage (and added to current counter output). Is 
there an easier way perhaps?

Gunther


More information about the freebsd-questions mailing list