How to monitor a lan adres or port range
-
i don't know in wich section this belong.
but i have some problem with one specific lan ip adres, but i don't know how to monitor all of it's trafic on all of it port's
how can i do this, do i have to make a firewall rull and log it, if so how should this rule look?
is it also possible to do this for a port range ? -
i have some problem with one specific lan ip adres, but i don't know how to monitor all of it's trafic on all of it port's
If the problem is in interaction with other systems on the same IP network then you can't really do anything on the firewall to help because the traffic goes direct, bypassing the firewall.
If the traffic goes through the firewall you can monitor it by running tcpdump from the pfsense shell or through the web GUI at Diagnostics -> Packet Capture and specify the IP address of the system "of interest".