From mboxrd@z Thu Jan 1 00:00:00 1970 From: Raymond Leach Subject: IPtables accounting ... Date: 13 Nov 2002 15:24:15 +0200 Sender: netfilter-admin@lists.netfilter.org Message-ID: <1037193855.4553.25.camel@rayw.knowledgefactory.co.za> Mime-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="=-1Dkh/MbskVnG3OC2GRLE" Return-path: Errors-To: netfilter-admin@lists.netfilter.org List-Help: List-Post: List-Subscribe: , List-Id: List-Unsubscribe: , List-Archive: To: Netfilter Mailing List --=-1Dkh/MbskVnG3OC2GRLE Content-Type: text/plain Content-Transfer-Encoding: quoted-printable Hi Where do I do iptables accounting? For example: If I have users on a private LAN surfing via a proxy on the firewall and I have web servers in a DMZ also being routed via the firewall, where do I put my accounting rules? In the FORWARD chain, or the INPUT chain, or both? Ray --=20 --=-1Dkh/MbskVnG3OC2GRLE Content-Type: application/pgp-signature; name=signature.asc Content-Description: This is a digitally signed message part -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.0.7 (GNU/Linux) iD8DBQA90lJ/h1fuR/Bv+ygRAojeAJ4tGCyFInNouIgRtL0qG1qHgDtoDQCgoOMf HHFOMj4e2p0ANiv3PiJEE6g= =Ezkz -----END PGP SIGNATURE----- --=-1Dkh/MbskVnG3OC2GRLE--