Files
geedge-jira/md/OSS-127.md
2025-09-14 22:27:11 +00:00

44 lines
1.3 KiB
Markdown
Raw Permalink Blame History

This file contains ambiguous Unicode characters

This file contains Unicode characters that might be confused with other characters. If you think that this is intentional, you can safely ignore this warning. Use the Escape button to reveal them.

# 给刘洋统计wang yan数据
| ID | Creation Date | Assignee | Status |
|----|----------------|----------|--------|
| OSS-127 | 2020-06-09T15:59:38.000+0800 | 蒋慧慧 | 完成 |
---
登录信息港服务器192.168.40.182,进入目录/home/wangyan下载日志压缩包disflow.log.zip
解压缩后为每台处理机的日志的压缩包
!image-2020-06-04-13-24-18-682.png!
需求:
1、编写脚本解压日志压缩包到指定目录例如10.112.14.1-disflow.log.zip解压到当前目录10.112.14.1目录下)
2、解压缩后的日志文件disflow.log.2020-06-02替换名称为 处理机ip-disflow.log例如10.112.14.1-disflow.log
3、按照如下要求统计日志时间过滤15:30-18:00
!image-2020-06-04-13-02-34-283.png!
说明:
1、日志中dir字段有123三个值其中dir=3为双向流dir=1为CtoS流量dir=2为StoC流量即为单向流
2、四元组源IP+源端口+目的IP+目的端口
3、二元组源IP+目的IP
4、例如日志中line150:addr:36.37.195.226,17979,101.226.211.106,80源IP为36.37.195.226源端口为17979目的IP为101.226.211.106目的端口为80
# Attachments
Attachment: 网研数据统计.txt
[网研数据统计.txt](https://gfwleak.exec.li/admin/geedge-jira/raw/branch/master/attachment/11767/网研数据统计.txt)