Firewall Rule States Bandwidth Usage Timeframe
-
Have done quite a bit of Googling around about this but haven't come across anything concrete yet.
When looking at the firewall rules tab on the left hand side under the States column is a list of bandwidth usage which has hit that rule. What is the timeframe for this bandwidth? Since last reboot? Since last rule modification?
Certainly not the best way to track bandwidth but I'm still curious.
I'm sure there is already an answer out there somewhere but searching around came up with mostly unrelated results.
-
@planedrop I believe it's since the rules were last loaded, which may be after the last reboot.
-
@SteveITS Gotcha, this makes sense.
I did a bit of testing and can confirm that adjusting a rule and processing a reload does reset the stats for what appears to be all of the rules bandwidth listings.
Was just getting curious because I saw 650TiB for a WAN rule in a prod environment, and while that number itself didn't surprise me at all (very high bandwidth environment), it got me thinking how long ago that had to have been (firewall had been up for 43 days which sounds about right for this environment).
Anyway, appreciate the help here, I think you're right it's since last reload. Though it doesn't seem to be effected by the reloads the pfB applies which is interesting.
I'll try and do some more testing and post back here.
-
@planedrop if your running a 6500-T-Series or similar backbone system that would be nothing. Some of them can do hundreds of terabits a second 800tb a second.
-
@JonathanLee Yeah for sure, but I'm not running anything like that lol.
I'd still consider 10s of TB a day quite a bit of volume compared to most places though.