Networking Forums

Networking Forums > Computer Networking > Linux Networking > DMZ for logging

Reply
Thread Tools Display Modes

DMZ for logging

 
 
Enrico
Guest
Posts: n/a

 
      01-31-2012, 06:26 PM
Il 31/01/2012 16:28, Harry Putnam ha scritto:
> Two people have mentioned `mirroring' a port. What does it actually
> mean and how would it look in a diagram? Just a text style rough idea.


A simple schematic:

WAN (ISP)
|
|
Ethernet Switch
|
|
Router/Firewall


If you have this situation (and you have a decent switch), you can
reconfigure your switch to "mirror" a port, eg. copy everything from
port X to Y. So:

WAN (ISP)
|
|
Ethernet Switch
X/ \Y
/ \
Router/FW Logging Server


Most switches have the capability to stop incoming traffic from mirrored
Y port, so your logging server will be passive.

In this case the switch literally do a raw copy of packets that are
incoming/outgoing over port X to port Y, just like you're watching the
traffic flow directly into the cable.

How configure that depends on your switch.

PS: sorry for my bad english.

Enrico
 
Reply With Quote
 
 
 
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Logging in Quinnteach Wireless Networks 1 11-19-2006 01:26 AM
IAS logging to SQL Please help Mike Adams Windows Networking 0 09-28-2006 06:23 PM
smb logging Andrew Zirkel Windows Networking 0 03-09-2006 05:53 PM
URL logging Fred Home Networking 4 07-08-2005 05:19 PM
logging on allad Windows Networking 1 07-22-2003 11:32 AM



1 2 3 4 5 6 7 8 9 10 11