Looking for a way to determine what traffic is actually allowed
 DaleWest                
                
                     Newbie ✭
DaleWest                
                
                     Newbie ✭                
            Greetings-
Is there a definitive way via logging to determine what traffic is *actually* allowed *through* the firewall? I see tons of 'Connection opened' log entries, but it's obvious that the vast majority of those don't correspond to -actual- external connections to my internal machines. It seems exceedingly difficult to determine just what my firewall is actually doing.
Category: Firewall Management and Analytics
0      
             
             
            
Answers
Have you used NSM Analytics?
Hi there. No, I haven't. But I should be able to ascertain that information without an addon or a 3rd party product, shouldn't I?