I use ipac-ng for iptables and a webfrontend to query it. Unfortunately i forgot the name. It's quiet easy to setup, it doesn't affect your firewall rules (e.g. shorewall) and works with 2.2 and 2.4 kernel.
Thomas Quoting Jeremy Lunn <[EMAIL PROTECTED]>: > > I think the only reliable solution is to have a counter that is reset > when you query it. Can SNMP support that? > > Iptables could be one way of doing it. If you ivoke the iptabeles > command with -v then you get verbrose output, which includes byte > counters then -x to sure the exact value of numbers instead of say 100K > and -Z will reset the counter. I'm not sure what exists in the way of > an iptables perl module. > > -- > Jeremy Lunn > Melbourne, Australia > http://psi.sf.net/ - Jabber client for Linux/win32/MacOS. > > > -- > To UNSUBSCRIBE, email to [EMAIL PROTECTED] > with a subject of "unsubscribe". Trouble? Contact > [EMAIL PROTECTED] > > ------------------------------------------------- This mail sent through IMP: http://horde.org/imp/