Navigation

    Netgate Discussion Forum
    • Register
    • Login
    • Search
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search

    Monitorar acesso tcpdump, ips…

    Portuguese
    2
    3
    162
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • F
      fabiomoraes055 last edited by

      Boa tarde senhores,

      Gostaria de uma opinião, preciso monitorar os acessos externo em um determinado servidor interno da empresa. Verificar se nenhum cliente esta roubando informações através de robos.

      Qual seria melhor solução: instalar IPS, verificar os logs, tcpdump…?

      Obrigado

      Att
      Fábio Moraes

      1 Reply Last reply Reply Quote 0
      • marcelloc
        marcelloc last edited by

        @fabiomoraes055:

        Qual seria melhor solução: instalar IPS, verificar os logs, tcpdump…?

        Todas juntas

        Além de melhorar os logs da aplicação e ter certeza que o banco de dados tem acesso restrito aos servidores da aplicação.

        1 Reply Last reply Reply Quote 0
        • F
          fabiomoraes055 last edited by

          Bom dia,

          Obrigado pela resposta.

          Acessando no pfsense Diagnostics\states eu consigo fazer um filtro com o IP desejado.

          No caminho /var/log estão todos os logs do sistema.

          Duvidas:
          No pfsense existe algum log com todos os acessos no firewall ou precisaria fazer um tcpdump e salvar em um arquivo?

          Existe alguma ferramenta que eu consiga ler os log no pfsense? Já utilizei o wireshark.

          Obrigado

          Fábio

          1 Reply Last reply Reply Quote 0
          • First post
            Last post

          Products

          • Platform Overview
          • TNSR
          • pfSense Plus
          • Appliances

          Services

          • Training
          • Professional Services

          Support

          • Subscription Plans
          • Contact Support
          • Product Lifecycle
          • Documentation

          News

          • Media Coverage
          • Press
          • Events

          Resources

          • Blog
          • FAQ
          • Find a Partner
          • Resource Library
          • Security Information

          Company

          • About Us
          • Careers
          • Partners
          • Contact Us
          • Legal
          Our Mission

          We provide leading-edge network security at a fair price - regardless of organizational size or network sophistication. We believe that an open-source security model offers disruptive pricing along with the agility required to quickly address emerging threats.

          Subscribe to our Newsletter

          Product information, software announcements, and special offers. See our newsletter archive to sign up for future newsletters and to read past announcements.

          © 2021 Rubicon Communications, LLC | Privacy Policy