OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • English Forums »
  • Intrusion Detection and Prevention »
  • Newb Question; how to log all packets, promiscuous mode on WAN
« previous next »
  • Print
Pages: [1]

Author Topic: Newb Question; how to log all packets, promiscuous mode on WAN  (Read 1003 times)

someone

  • Full Member
  • ***
  • Posts: 115
  • Karma: 2
    • View Profile
Newb Question; how to log all packets, promiscuous mode on WAN
« on: June 26, 2024, 02:00:17 am »
I havnt found a way
Is there a way to log all packets on WAN side, in promiscuous mode, thats what I was trying to alter in suricata yaml was turn it on,
but it resets to default after reboot. Not the log packets in the firewall having to do with a rule, but all packets on WAN
And does it store them in log files
Thanks in advance
Logged

someone

  • Full Member
  • ***
  • Posts: 115
  • Karma: 2
    • View Profile
Re: Newb Question; how to log all packets, promiscuous mode on WAN
« Reply #1 on: June 26, 2024, 09:53:17 pm »
after thinking about that
I mean all packets coming with my IP, like suricata does
Like wireshark does
Can we add a package
Thanks
Logged

Patrick M. Hausen

  • Hero Member
  • *****
  • Posts: 6925
  • Karma: 584
    • View Profile
Re: Newb Question; how to log all packets, promiscuous mode on WAN
« Reply #2 on: June 26, 2024, 10:00:12 pm »
tcpdump is installed by default.
Logged
Deciso DEC750
People who think they know everything are a great annoyance to those of us who do. (Isaac Asimov)

someone

  • Full Member
  • ***
  • Posts: 115
  • Karma: 2
    • View Profile
Re: Newb Question; how to log all packets, promiscuous mode on WAN
« Reply #3 on: June 26, 2024, 10:17:17 pm »
oh thanks
I didnt see it, feeling dumb
That I know how to use
I will try that in the shell
I keep liking opnsense more and more
Its easier and shows more faster than a linux box setup with suricata
Thanks again for your help
Logged

cookiemonster

  • Hero Member
  • *****
  • Posts: 1827
  • Karma: 95
    • View Profile
Re: Newb Question; how to log all packets, promiscuous mode on WAN
« Reply #4 on: June 26, 2024, 10:29:09 pm »
Even better, tcpdump installed by default has GUI integration if you want that too.
Logged

someone

  • Full Member
  • ***
  • Posts: 115
  • Karma: 2
    • View Profile
Re: Newb Question; how to log all packets, promiscuous mode on WAN
« Reply #5 on: June 26, 2024, 11:26:06 pm »
oh I missed that, wow
Its under interface - diagnostics - packet capture

Thanks again everyone for your help
Dont want to blab on to much
Logged

  • Print
Pages: [1]
« previous next »
  • OPNsense Forum »
  • English Forums »
  • Intrusion Detection and Prevention »
  • Newb Question; how to log all packets, promiscuous mode on WAN
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2024 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2