2003-08-10 03:11:50 +02:00
|
|
|
#
|
2006-07-14 16:19:52 +02:00
|
|
|
# Shorewall version 3.4 - Accounting File
|
2003-08-10 03:11:50 +02:00
|
|
|
#
|
|
|
|
# /etc/shorewall/accounting
|
|
|
|
#
|
|
|
|
# Accounting rules exist simply to count packets and bytes in categories
|
|
|
|
# that you define in this file. You may display these rules and their
|
|
|
|
# packet and byte counters using the "shorewall show accounting" command.
|
|
|
|
#
|
2005-08-02 18:46:30 +02:00
|
|
|
# Please see http://shorewall.net/Accounting.html for examples and
|
2003-08-11 03:36:32 +02:00
|
|
|
# additional information about how to use this file.
|
2003-08-10 03:11:50 +02:00
|
|
|
#
|
2003-08-11 03:36:32 +02:00
|
|
|
#
|
2003-08-20 18:54:27 +02:00
|
|
|
# Columns are:
|
2003-08-10 03:11:50 +02:00
|
|
|
#
|
2003-08-10 18:01:21 +02:00
|
|
|
# ACTION - What to do when a match is found.
|
|
|
|
#
|
|
|
|
# COUNT - Simply count the match and continue
|
|
|
|
# with the next rule
|
|
|
|
# DONE - Count the match and don't attempt
|
2003-08-20 18:54:27 +02:00
|
|
|
# to match any other accounting rules
|
|
|
|
# in the chain specified in the CHAIN
|
|
|
|
# column.
|
2005-08-02 18:46:30 +02:00
|
|
|
# <chain>[:COUNT]
|
2003-08-20 18:54:27 +02:00
|
|
|
# - Where <chain> is the name of
|
|
|
|
# a chain. Shorewall will create
|
|
|
|
# the chain automatically if it
|
|
|
|
# doesn't already exist. Causes
|
|
|
|
# a jump to that chain. If :COUNT
|
|
|
|
# is including, a counting rule
|
|
|
|
# matching this record will be
|
2005-08-02 18:46:30 +02:00
|
|
|
# added to <chain>
|
2003-08-20 18:54:27 +02:00
|
|
|
#
|
2005-08-02 18:46:30 +02:00
|
|
|
# CHAIN - The name of a chain. If specified as "-" the
|
2003-08-20 18:54:27 +02:00
|
|
|
# 'accounting' chain is assumed. This is the chain
|
|
|
|
# where the accounting rule is added. The chain will
|
|
|
|
# be created if it doesn't already exist.
|
2005-08-02 18:46:30 +02:00
|
|
|
#
|
2003-08-10 03:11:50 +02:00
|
|
|
# SOURCE - Packet Source
|
|
|
|
#
|
|
|
|
# The name of an interface, an address (host or net) or
|
|
|
|
# an interface name followed by ":"
|
2005-08-02 18:46:30 +02:00
|
|
|
# and a host or net address.
|
2003-08-10 03:11:50 +02:00
|
|
|
#
|
|
|
|
# DESTINATION - Packet Destination
|
|
|
|
#
|
|
|
|
# Format the same as the SOURCE column.
|
|
|
|
#
|
|
|
|
# PROTOCOL A protocol name (from /etc/protocols), a protocol
|
2005-10-04 20:46:35 +02:00
|
|
|
# number, "ipp2p", "ipp2p:udp" or "ipp2p:all"
|
2003-08-10 03:11:50 +02:00
|
|
|
#
|
2005-10-04 20:46:35 +02:00
|
|
|
# DEST PORT(S) Destination Port number. If the PROTOCOL is "ipp2p"
|
2005-08-02 18:46:30 +02:00
|
|
|
# then this column must contain an ipp2p option
|
|
|
|
# ("iptables -m ipp2p --help") without the leading
|
|
|
|
# "--". If no option is given in this column, "ipp2p"
|
|
|
|
# is assumed.
|
2003-08-10 03:11:50 +02:00
|
|
|
#
|
|
|
|
# Service name from /etc/services or port number. May
|
|
|
|
# only be specified if the protocol is TCP or UDP (6
|
2005-08-02 18:46:30 +02:00
|
|
|
# or 17).
|
2003-08-10 03:11:50 +02:00
|
|
|
#
|
2005-08-13 00:11:30 +02:00
|
|
|
# You may place a comma-separated list of port numbers in
|
2005-10-04 20:00:55 +02:00
|
|
|
# this column if your kernel and iptables include
|
2005-08-13 00:11:30 +02:00
|
|
|
# multiport match support.
|
|
|
|
#
|
|
|
|
# SOURCE PORT(S) Source Port number
|
2003-08-10 03:11:50 +02:00
|
|
|
#
|
|
|
|
# Service name from /etc/services or port number. May
|
|
|
|
# only be specified if the protocol is TCP or UDP (6
|
|
|
|
# or 17).
|
|
|
|
#
|
2005-08-13 00:11:30 +02:00
|
|
|
# You may place a comma-separated list of port numbers in
|
2005-10-04 20:00:55 +02:00
|
|
|
# this column if your kernel and iptables include
|
2005-08-13 00:11:30 +02:00
|
|
|
# multiport match support.
|
|
|
|
#
|
2005-07-09 07:45:05 +02:00
|
|
|
# USER/GROUP This column may only be non-empty if the CHAIN is
|
|
|
|
# OUTPUT.
|
2005-10-04 20:00:55 +02:00
|
|
|
#
|
2005-07-09 07:45:05 +02:00
|
|
|
# The column may contain:
|
|
|
|
#
|
2005-08-02 18:46:30 +02:00
|
|
|
# [!][<user name or number>][:<group name or number>][+<program name>]
|
2005-07-09 07:45:05 +02:00
|
|
|
#
|
|
|
|
# When this column is non-empty, the rule applies only
|
|
|
|
# if the program generating the output is running under
|
|
|
|
# the effective <user> and/or <group> specified (or is
|
|
|
|
# NOT running under that id if "!" is given).
|
|
|
|
#
|
|
|
|
# Examples:
|
|
|
|
#
|
|
|
|
# joe #program must be run by joe
|
|
|
|
# :kids #program must be run by a member of
|
|
|
|
# #the 'kids' group
|
2005-08-02 18:46:30 +02:00
|
|
|
# !:kids #program must not be run by a member
|
2005-07-09 07:45:05 +02:00
|
|
|
# #of the 'kids' group
|
2005-10-31 22:23:16 +01:00
|
|
|
# +upnpd #program named upnpd (This feature was
|
|
|
|
# #removed from Netfilter in kernel
|
|
|
|
# #version 2.6.14).
|
2005-07-09 07:45:05 +02:00
|
|
|
#
|
2003-08-20 18:54:27 +02:00
|
|
|
# In all of the above columns except ACTION and CHAIN, the values "-",
|
|
|
|
# "any" and "all" may be used as wildcards
|
2003-08-11 03:36:32 +02:00
|
|
|
#
|
2005-08-02 18:46:30 +02:00
|
|
|
# Please see http://shorewall.net/Accounting.html for examples and
|
|
|
|
# additional information about how to use this file.
|
2003-08-11 03:36:32 +02:00
|
|
|
#
|
2005-08-02 18:46:30 +02:00
|
|
|
#####################################################################################
|
|
|
|
#ACTION CHAIN SOURCE DESTINATION PROTO DEST SOURCE USER/
|
2005-08-13 00:11:30 +02:00
|
|
|
# PORT(S) PORT(S) GROUP
|
2003-08-11 04:12:48 +02:00
|
|
|
#LAST LINE -- ADD YOUR ENTRIES BEFORE THIS ONE -- DO NOT REMOVE
|