From c5610eab4ba55aebb96ed52fe7407dfd78a4b709 Mon Sep 17 00:00:00 2001 From: kishan Date: Fri, 17 Sep 2010 12:00:32 +0530 Subject: [PATCH] Bug 6175: Added rules to account HAProxy traffic --- scripts/network/domr/networkUsage.sh | 6 ++++++ 1 file changed, 6 insertions(+) diff --git a/scripts/network/domr/networkUsage.sh b/scripts/network/domr/networkUsage.sh index 66b2e6a44ef..2aa76fe2d8c 100755 --- a/scripts/network/domr/networkUsage.sh +++ b/scripts/network/domr/networkUsage.sh @@ -25,8 +25,12 @@ create_usage_rules () { ssh -p 3922 -o StrictHostKeyChecking=no -i $cert root@$dRIp "\ iptables -N NETWORK_STATS > /dev/null; iptables -I FORWARD -j NETWORK_STATS > /dev/null; + iptables -I INPUT -j NETWORK_STATS > /dev/null; + iptables -I OUTPUT -j NETWORK_STATS > /dev/null; iptables -A NETWORK_STATS -i eth0 -o eth2 > /dev/null; iptables -A NETWORK_STATS -i eth2 -o eth0 > /dev/null; + iptables -A NETWORK_STATS -o eth2 ! -i eth0 -p tcp > /dev/null; + iptables -A NETWORK_STATS -i eth2 ! -o eth0 -p tcp > /dev/null; " return 1 } @@ -37,6 +41,8 @@ add_public_interface () { ssh -p 3922 -o StrictHostKeyChecking=no -i $cert root@$dRIp "\ iptables -A NETWORK_STATS -i eth0 -o $pubIf > /dev/null; iptables -A NETWORK_STATS -i $pubIf -o eth0 > /dev/null; + iptables -A NETWORK_STATS -o $pubIf ! -i eth0 -p tcp > /dev/null; + iptables -A NETWORK_STATS -i $pubIf ! -o eth0 -p tcp > /dev/null; " return 1 }