PDA

Bekijk de volledige versie : URL Logging



Magic
21-04-2005, 22:14
Does anyone know how to keep a log with all the URL's that where visited via the router, with the (internal network) ip-address that made the request? I've searched the forum, but I can only find information about collecting data on the amount of traffic or all ip-traffic (not just http).

So what I'm looking for is basically something like urlsnarf (http://www.groar.org/trad/dsniff/dsniff-2.3/english-txt/urlsnarf.8.txt) for the wl500g! Any ideas?

barsju
21-04-2005, 22:32
You can use junkbuster. Use the REDIRECT target of iptables to redirect web traffic to junkbuster.


Ex.
iptables -t nat -A PREROUTING -p tcp --dport 80 -j REDIRECT --to-ports 8000

Search forum for binaries.

S.

hiall
22-04-2005, 09:14
You can use junkbuster. Use the REDIRECT target of iptables to redirect web traffic to junkbuster.


Ex.
iptables -t nat -A PREROUTING -p tcp --dport 80 -j REDIRECT --to-ports 8000

Search forum for binaries.

S.

I am interested too in having a log file with the information regarding the URL visited by each PCs on the LAN.
How do you use the above command? I have tried to open a DOS box in Windows Xp but it did not work.
I want to do this using the original firmware that came with the WL500g (no custom firmware).

Thanks
:confused:

barsju
22-04-2005, 09:21
Sorry. This is not possible with original FW. You need custom FW, and some form of external storage (USB harddisk or USB stick).

S.

hiall
22-04-2005, 09:24
Sorry. This is not possible with original FW. You need custom FW, and some form of external storage (USB harddisk or USB stick).

S.

Thank you for your reply.

Which custom firmware do you suggest to upload on the wl500g?
Can you post a link?

barsju
22-04-2005, 09:30
You need the latests FW from Oleg, as it's the only one that contains the REDIRECT target for iptables.

http://files.wl500g.info/asus/custom/oleg/1.9.2.7-4/

S.

rexster
22-04-2005, 15:53
can i redirect to another server for logging/filtering?
what's the command to use?

how to use wl-hdd for this?
what's the wl-hdd performances?
will it suitable to perform caching+filtering proxy?
like squid/webcleaner/middle-man.sf.net

barsju
22-04-2005, 22:24
can i redirect to another server for logging/filtering?

As far as I know, not with iptables. But I think junkbuster might be able to forward. Check junkbuster manual.



how to use wl-hdd for this?
what's the wl-hdd performances?
will it suitable to perform caching+filtering proxy?
like squid/webcleaner/middle-man.sf.net
I can only say try and see.. Maybe someone else has some experience..

S.

rexster
23-04-2005, 14:27
to try means i have to buy the stuff before i know it will work.
and risking my $150 (that's the price for wl-hdd in my country)

theoritically, how it perform?
i forgot where i read once that squid need certain amount memory to have certain amount disk space for caching.
from this, we can calculate in theory wheter it perform good in wl-hdd or not...


btw.
i see lots of questions unanswered.
while i see lots of knowledgeable people in the forum.
i really wonder why people wont answer.

is it the question too easy to solve? (by those who understand...)

Antiloop
23-04-2005, 16:43
btw.
i see lots of questions unanswered.
while i see lots of knowledgeable people in the forum.
i really wonder why people wont answer.

is it the question too easy to solve? (by those who understand...)

most times questions are already answered X times before and people don't like to behave like a parrot

and second thing why people don't want or refuse to answer is that the topic starter mostly does not supply enough or sufficient information

but all of this is already explained in the FAQ (the rules)