i have just installed Graylog and its able to process netflow data, but setting up visualizations looks like much work
This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.
Show posts Menu--- /var/netflow ------------------------------------------------------------------------------------------------------- /..
4.4 GiB [#################] src_addr_details_086400.sqlite
1.4 GiB [##### ] dst_port_086400.sqlite
1.2 GiB [#### ] dst_port_086400.sqlite-journal
419.1 MiB [# ] src_addr_086400.sqlite
121.8 MiB [ ] interface_000030.sqlite
36.5 MiB [ ] src_addr_000300.sqlite
17.3 MiB [ ] dst_port_003600.sqlite
15.0 MiB [ ] dst_port_000300.sqlite
13.1 MiB [ ] interface_000300.sqlite
13.0 MiB [ ] src_addr_003600.sqlite
1.5 MiB [ ] interface_003600.sqlite
136.0 KiB [ ] interface_086400.sqlite
12.0 KiB [ ] metadata.sqlite
[Interface]
PrivateKey = xxxxxxxxxxxxxxxxxx
Address = 10.0.9.80/32
DNS = 192.168.50.1
MTU = 1400
[Peer]
Endpoint = mydomain.com:51820
PublicKey = xxxxxxxxxxxxxxxxxxxxxxx
AllowedIPs = 192.168.50.1/24, 192.168.8.89/32
PersistentKeepalive = 25
Quote from: gdur on August 23, 2023, 09:22:50 AMthanks, that did it !!
This is exactly what I have experienced and it was solved after checking "Topology" of the Server configuration. See my post https://forum.opnsense.org/index.php?topic=35447.0
Quote from: PIv0 on August 21, 2023, 04:41:06 PMQuote from: franco on August 10, 2023, 02:45:12 PM
Yes, but you need to put the correct subnet size.
Cheers,
Franco
If on version 23.1.11 we used the line
ifconfig-push 192.168.yyy.xxx 255.255.255.0
Now in the IPv4 Tunnel Network field, you need to set the value
192.168.yyyy.xxx/24 ?
Did I understand correctly?
root@OPNsense:~ # ls -S -l -h /var/log/filter
total 1286944
-rw------- 1 root wheel 343M Feb 3 00:00 filter_20220202.log
-rw------- 1 root wheel 324M Feb 2 00:00 filter_20220201.log
-rw------- 1 root wheel 313M Feb 5 00:01 filter_20220204.log
-rw------- 1 root wheel 269M Feb 5 18:47 filter_20220205.log
-rw------- 1 root wheel 7.5M Jan 29 00:00 filter_20220128.log
lrwxr-x--- 1 root wheel 35B Feb 5 18:01 latest.log -> /var/log/filter/filter_20220205.log