监控网络的出入站情况,查找问题。尤其对不熟悉openwrt防火墙的人及其友好。相关命令在ui界面执行保存或者重启之后失效。
`
nft insert rule inet fw4 input tcp dport 8880 log prefix "入站8880 : "
nft insert rule inet fw4 forward tcp dport 8880 log prefix "转发8880 : "
nft insert rule inet fw4 output tcp dport 8880 log prefix "出站8880 : "
nft insert rule inet fw4 prerouting tcp dport 8880 log prefix "前置8880 : "
nft insert rule inet fw4 handle_reject tcp dport 8880 log prefix "拒绝处理8880 : "
nft insert rule inet fw4 syn_flood tcp dport 8880 log prefix "SYN洪水8880 : "
nft insert rule inet fw4 input_lan tcp dport 8880 log prefix "输入LAN8880 : "
nft insert rule inet fw4 output_lan tcp dport 8880 log prefix "输出LAN8880 : "
nft insert rule inet fw4 forward_lan tcp dport 8880 log prefix "转发LAN8880 : "
nft insert rule inet fw4 input_wan tcp dport 8880 log prefix "WAN输入8880 : "
nft insert rule inet fw4 output_wan tcp dport 8880 log prefix "WAN输出8880 : "
nft insert rule inet fw4 reject_from_wan tcp dport 8880 log prefix "拒绝来自WAN8880 : "
nft insert rule inet fw4 reject_to_wan tcp dport 8880 log prefix "拒绝去WAN8880 : "
nft insert rule inet fw4 dstnat tcp dport 8880 log prefix "NAT前置8880 : "
nft insert rule inet fw4 srcnat tcp dport 8880 log prefix "NAT后置8880 : "
nft insert rule inet fw4 raw_prerouting tcp dport 8880 log prefix "原始前置8880 : "
nft insert rule inet fw4 raw_output tcp dport 8880 log prefix "原始输出8880 : "
nft insert rule inet fw4 mangle_prerouting tcp dport 8880 log prefix "修改前置8880 : "
nft insert rule inet fw4 mangle_postrouting tcp dport 8880 log prefix "修改后置8880 : "
nft insert rule inet fw4 mangle_input tcp dport 8880 log prefix "修改输入8880 : "
nft insert rule inet fw4 mangle_output tcp dport 8880 log prefix "修改输出8880 : "
nft insert rule inet fw4 mangle_forward tcp dport 8880 log prefix "修改转发8880 : "
nft insert rule inet fw4 upnp_forward tcp dport 8880 log prefix "UPnP转发8880 : "
nft insert rule inet fw4 upnp_prerouting tcp dport 8880 log prefix "UPnP前置8880 : "
nft insert rule inet fw4 upnp_postrouting tcp dport 8880 log prefix "UPnP后置8880 : "
`
执行下面的命令监控
logread -f