How to count dropped connections

How to count dropped connections

Amos Shapira amos.shapira at gmail.com
Mon Jul 6 13:31:03 IDT 2009


2009/6/10 Imri Zvik <imriz at inter.net.il>:
> How about using iptables to count the TCP packets containing SYN's and
> comparing it to the access_log entries? There are a couple of pitfalls here
> that needs to be addressed (like retransmition of SYN packets), but this
> could probably be avoided by using parsing script, which would eliminate the
> duplicates.

We might do that. Even if the counts are not 100% accurate, they might
be a good data point to keep track of (in collectd) in case it can
indicate something when things go wrong.

Cheers,

--Amos



More information about the Linux-il mailing list