Home
Help
Search
Login
Register
OPNsense Forum
»
English Forums
»
General Discussion
»
Is there any Graphical report on hosts and traffic flow between?
« previous
next »
Print
Pages: [
1
]
Author
Topic: Is there any Graphical report on hosts and traffic flow between? (Read 951 times)
lar.hed
Sr. Member
Posts: 323
Karma: 10
Is there any Graphical report on hosts and traffic flow between?
«
on:
December 23, 2023, 04:27:57 pm »
So I have this wish for a graphical report kind-of-thing that shows all hosts per interface (yes I know, that can be alot if the installation is large) and the traffic generated between OPNsense and each host, per port/protocol if zoomed in. And so on? Is there any tool that does this?
Logged
bartjsmit
Hero Member
Posts: 2016
Karma: 194
Re: Is there any Graphical report on hosts and traffic flow between?
«
Reply #1 on:
December 24, 2023, 08:45:05 am »
Check out this thread
https://forum.opnsense.org/index.php?topic=19763.0
Cacti is another favourite and the weathermap plugin may do what you want:
https://www.cacti.net/info/cacti
Bart...
Logged
Patrick M. Hausen
Hero Member
Posts: 6802
Karma: 571
Re: Is there any Graphical report on hosts and traffic flow between?
«
Reply #2 on:
December 24, 2023, 09:10:12 am »
Is netflow not detailled enough?
Logged
Deciso DEC750
People who think they know everything are a great annoyance to those of us who do.
(Isaac Asimov)
lar.hed
Sr. Member
Posts: 323
Karma: 10
Re: Is there any Graphical report on hosts and traffic flow between?
«
Reply #3 on:
December 24, 2023, 11:19:10 am »
Well the details are most likely there somewhere.
But I find it not that very useful to find what is happening in real time.
Say one could combine "Filter Live View" with a "GUI" presentation, where all identified hosts are shown, and what traffic flows where - with lines in between... Double click on any object (host/flow/interface/<soemthing more>) to find any more details. Filter on only certain ports or "none of these ports" and so on.
The ability from that/this screen to create filter rules, either for pass (white list) or block (black list) - I'm more of a block everything, and then open what is needed (white list) - however sometimes this is simply hard because there is no or very little (in-)correct documentation of what is needed. And a lot of software today seems to be able by automagic tunnel there communication over https anyway so... How do you fast find out what is needed to be opened? I guess that is what I am trying to figure out. Running a firewall that allows everything out is maybe comfortable? But not to my likening...
Logged
Print
Pages: [
1
]
« previous
next »
OPNsense Forum
»
English Forums
»
General Discussion
»
Is there any Graphical report on hosts and traffic flow between?