[flow-tools] Local Traffic filter...

Michael Bellears michael.bellears@staff.datafx.com.au
Thu, 16 May 2002 16:59:48 +1000


Ahh Yes! - That will teach me to copy+paste!

I still get zero output though:

./flow-cat -a /netflow/oar/krc3.v5/2002/2002-04/2002-04-30 | ./flow-filter
-f client.acl -D foo|./flow-filter -f local.acl -S bar|./flow-stat -f17
|more
#  --- ---- ---- Report Information --- --- ---
#
# Fields:    Total
# Symbols:   Disabled
# Sorting:   None
# Name:      Input interface
#
# Args:      ./flow-stat -f17 
#
#
# interface flows                 octets                packets
#
vagabond:~/flow-tools-0.57/src#

Regards,
MB

> -----Original Message-----
> From: Cougar [mailto:cougar@random.ee]
> Sent: Thursday, 16 May 2002 4:46 PM
> To: Michael Bellears
> Cc: 'flow-tools@splintered.net'
> Subject: RE: [flow-tools] Local Traffic filter...
> 
> 
> On Thu, 16 May 2002, Michael Bellears wrote:
> 
> > Now, if I have the following:
> > local.acl
> > ip access-list standard bar deny host yyy.yyy.yyy.yyy
> > ip access-list standard bar deny any
> 
> Are you sure it should be "deny any" instead of "permit any" ? ;-)
> 
> ---
> Cougar
> 
> 
> _______________________________________________
> flow-tools@splintered.net
> http://www.splintered.net/sw/flow-tools