Changeset 427 for vendor/current/docs/manpages/vfs_smb_traffic_analyzer.8
- Timestamp:
- Apr 9, 2010, 3:20:58 PM (16 years ago)
- File:
-
- 1 edited
Legend:
- Unmodified
- Added
- Removed
-
vendor/current/docs/manpages/vfs_smb_traffic_analyzer.8
r414 r427 1 '\" t2 1 .\" Title: smb_traffic_analyzer 3 2 .\" Author: [see the "AUTHOR" section] 4 .\" Generator: DocBook XSL Stylesheets v1.7 5.2<http://docbook.sf.net/>5 .\" Date: 0 2/19/20103 .\" Generator: DocBook XSL Stylesheets v1.7 <http://docbook.sf.net/> 4 .\" Date: 0/2010 6 5 .\" Manual: System Administration tools 7 6 .\" Source: Samba 3.5 8 7 .\" Language: English 9 8 .\" 10 .TH "SMB_TRAFFIC_ANALYZER" "8" "02/19/2010" "Samba 3\&.5" "System Administration tools" 9 .TH "SMB_TRAFFIC_ANALYZER" "8" "03/30/2010" "Samba 3\&.5" "System Administration tools" 10 .\" ----------------------------------------------------------------- 11 .\" * (re)Define some macros 12 .\" ----------------------------------------------------------------- 13 .\" ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ 14 .\" toupper - uppercase a string (locale-aware) 15 .\" ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ 16 .de toupper 17 .tr aAbBcCdDeEfFgGhHiIjJkKlLmMnNoOpPqQrRsStTuUvVwWxXyYzZ 18 \\$* 19 .tr aabbccddeeffgghhiijjkkllmmnnooppqqrrssttuuvvwwxxyyzz 20 .. 21 .\" ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ 22 .\" SH-xref - format a cross-reference to an SH section 23 .\" ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ 24 .de SH-xref 25 .ie n \{\ 26 .\} 27 .toupper \\$* 28 .el \{\ 29 \\$* 30 .\} 31 .. 32 .\" ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ 33 .\" SH - level-one heading that works better for non-TTY output 34 .\" ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ 35 .de1 SH 36 .\" put an extra blank line of space above the head in non-TTY output 37 .if t \{\ 38 .sp 1 39 .\} 40 .sp \\n[PD]u 41 .nr an-level 1 42 .set-an-margin 43 .nr an-prevailing-indent \\n[IN] 44 .fi 45 .in \\n[an-margin]u 46 .ti 0 47 .HTML-TAG ".NH \\n[an-level]" 48 .it 1 an-trap 49 .nr an-no-space-flag 1 50 .nr an-break-flag 1 51 \." make the size of the head bigger 52 .ps +3 53 .ft B 54 .ne (2v + 1u) 55 .ie n \{\ 56 .\" if n (TTY output), use uppercase 57 .toupper \\$* 58 .\} 59 .el \{\ 60 .nr an-break-flag 0 61 .\" if not n (not TTY), use normal case (not uppercase) 62 \\$1 63 .in \\n[an-margin]u 64 .ti 0 65 .\" if not n (not TTY), put a border/line under subheading 66 .sp -.6 67 \l'\n(.lu' 68 .\} 69 .. 70 .\" ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ 71 .\" SS - level-two heading that works better for non-TTY output 72 .\" ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ 73 .de1 SS 74 .sp \\n[PD]u 75 .nr an-level 1 76 .set-an-margin 77 .nr an-prevailing-indent \\n[IN] 78 .fi 79 .in \\n[IN]u 80 .ti \\n[SN]u 81 .it 1 an-trap 82 .nr an-no-space-flag 1 83 .nr an-break-flag 1 84 .ps \\n[PS-SS]u 85 \." make the size of the head bigger 86 .ps +2 87 .ft B 88 .ne (2v + 1u) 89 .if \\n[.$] \&\\$* 90 .. 91 .\" ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ 92 .\" BB/BE - put background/screen (filled box) around block of text 93 .\" ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ 94 .de BB 95 .if t \{\ 96 .sp -.5 97 .br 98 .in +2n 99 .ll -2n 100 .gcolor red 101 .di BX 102 .\} 103 .. 104 .de EB 105 .if t \{\ 106 .if "\\$2"adjust-for-leading-newline" \{\ 107 .sp -1 108 .\} 109 .br 110 .di 111 .in 112 .ll 113 .gcolor 114 .nr BW \\n(.lu-\\n(.i 115 .nr BH \\n(dn+.5v 116 .ne \\n(BHu+.5v 117 .ie "\\$2"adjust-for-leading-newline" \{\ 118 \M[\\$1]\h'1n'\v'+.5v'\D'P \\n(BWu 0 0 \\n(BHu -\\n(BWu 0 0 -\\n(BHu'\M[] 119 .\} 120 .el \{\ 121 \M[\\$1]\h'1n'\v'-.5v'\D'P \\n(BWu 0 0 \\n(BHu -\\n(BWu 0 0 -\\n(BHu'\M[] 122 .\} 123 .in 0 124 .sp -.5v 125 .nf 126 .BX 127 .in 128 .sp .5v 129 .fi 130 .\} 131 .. 132 .\" ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ 133 .\" BM/EM - put colored marker in margin next to block of text 134 .\" ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ 135 .de BM 136 .if t \{\ 137 .br 138 .ll -2n 139 .gcolor red 140 .di BX 141 .\} 142 .. 143 .de EM 144 .if t \{\ 145 .br 146 .di 147 .ll 148 .gcolor 149 .nr BH \\n(dn 150 .ne \\n(BHu 151 \M[\\$1]\D'P -.75n 0 0 \\n(BHu -(\\n[.i]u - \\n(INu - .75n) 0 0 -\\n(BHu'\M[] 152 .in 0 153 .nf 154 .BX 155 .in 156 .fi 157 .\} 158 .. 11 159 .\" ----------------------------------------------------------------- 12 160 .\" * set default formatting … … 19 167 .\" * MAIN CONTENT STARTS HERE * 20 168 .\" ----------------------------------------------------------------- 21 .SH "N AME"169 .SH "N" 22 170 vfs_smb_traffic_analyzer \- log Samba VFS read and write operations through a socket to a helper application 23 .SH "SYNOPSIS" 171 .SH "Synopsis" 172 .fam C 24 173 .HP \w'\ 'u 25 vfs objects = smb_traffic_analyzer 174 \FCvfs objects = smb_traffic_analyzer\F[] 175 .fam 26 176 .SH "DESCRIPTION" 27 177 .PP … … 31 181 .PP 32 182 The 33 vfs_smb_traffic_analyzer 183 \FCvfs_smb_traffic_analyzer\F[] 34 184 VFS module logs client write and read operations on a Samba server and sends this data over a socket to a helper program, which feeds a SQL database\&. More information on the helper programs can be obtained from the homepage of the project at: http://holger123\&.wordpress\&.com/smb\-traffic\-analyzer/ 35 185 .PP 36 vfs_smb_traffic_analyzer 186 \FCvfs_smb_traffic_analyzer\F[] 37 187 currently is aware of the following VFS operations: 38 188 .RS 4 … … 49 199 .RE 50 200 .PP 51 vfs_smb_traffic_analyzer 201 \FCvfs_smb_traffic_analyzer\F[] 52 202 sends the following data in a fixed format seperated by a comma through either an internet or a unix domain socket: 53 203 .sp … … 55 205 .RS 4 56 206 .\} 57 .nf 207 .fam C 208 .ps -1 209 .nf 210 .if t \{\ 211 .sp -1 212 .\} 213 .BB lightgray adjust-for-leading-newline 214 .sp -1 215 58 216 BYTES|USER|DOMAIN|READ/WRITE|SHARE|FILENAME|TIMESTAMP 59 217 60 .fi 218 .EB lightgray adjust-for-leading-newline 219 .if t \{\ 220 .sp 1 221 .\} 222 .fi 223 .fam 224 .ps +1 61 225 .if n \{\ 62 226 .RE … … 73 237 .IP \(bu 2.3 74 238 .\} 75 BYTES 239 \FCBYTES\F[] 76 240 \- the length in bytes of the VFS operation 77 241 .RE … … 85 249 .IP \(bu 2.3 86 250 .\} 87 USER 251 \FCUSER\F[] 88 252 \- the user who initiated the operation 89 253 .RE … … 97 261 .IP \(bu 2.3 98 262 .\} 99 DOMAIN 263 \FCDOMAIN\F[] 100 264 \- the domain of the user 101 265 .RE … … 109 273 .IP \(bu 2.3 110 274 .\} 111 READ/WRITE 275 \FCREAD/WRITE\F[] 112 276 \- either "W" for a write operation or "R" for read 113 277 .RE … … 121 285 .IP \(bu 2.3 122 286 .\} 123 SHARE 287 \FCSHARE\F[] 124 288 \- the name of the share on which the VFS operation occured 125 289 .RE … … 133 297 .IP \(bu 2.3 134 298 .\} 135 FILENAME 299 \FCFILENAME\F[] 136 300 \- the name of the file that was used by the VFS operation 137 301 .RE … … 145 309 .IP \(bu 2.3 146 310 .\} 147 TIMESTAMP 311 \FCTIMESTAMP\F[] 148 312 \- a timestamp, formatted as "yyyy\-mm\-dd hh\-mm\-ss\&.ms" indicating when the VFS operation occured 149 313 .sp … … 184 348 .RS 4 185 349 .\} 186 .nf 350 .fam C 351 .ps -1 352 .nf 353 .if t \{\ 354 .sp -1 355 .\} 356 .BB lightgray adjust-for-leading-newline 357 .sp -1 358 187 359 \fI[example_share]\fR 188 360 \m[blue]\fBpath = /data/example\fR\m[] … … 190 362 \m[blue]\fBsmb_traffic_analyzer:mode = unix_domain_socket\fR\m[] 191 363 192 .fi 364 .EB lightgray adjust-for-leading-newline 365 .if t \{\ 366 .sp 1 367 .\} 368 .fi 369 .fam 370 .ps +1 193 371 .if n \{\ 194 372 .RE … … 200 378 .RS 4 201 379 .\} 202 .nf 380 .fam C 381 .ps -1 382 .nf 383 .if t \{\ 384 .sp -1 385 .\} 386 .BB lightgray adjust-for-leading-newline 387 .sp -1 388 203 389 \fI[example_share]\fR 204 390 \m[blue]\fBpath = /data/example\fR\m[] … … 207 393 \m[blue]\fBsmb_traffic_analyzer:port = 3491\fR\m[] 208 394 209 .fi 395 .EB lightgray adjust-for-leading-newline 396 .if t \{\ 397 .sp 1 398 .\} 399 .fi 400 .fam 401 .ps +1 210 402 .if n \{\ 211 403 .RE … … 217 409 .RS 4 218 410 .\} 219 .nf 411 .fam C 412 .ps -1 413 .nf 414 .if t \{\ 415 .sp -1 416 .\} 417 .BB lightgray adjust-for-leading-newline 418 .sp -1 419 220 420 \fI[example_share]\fR 221 421 \m[blue]\fBpath = /data/example\fR\m[] … … 225 425 \m[blue]\fBsmb_traffic_analyzer:anonymize_prefix = User\fR\m[] 226 426 227 .fi 427 .EB lightgray adjust-for-leading-newline 428 .if t \{\ 429 .sp 1 430 .\} 431 .fi 432 .fam 433 .ps +1 228 434 .if n \{\ 229 435 .RE
Note:
See TracChangeset
for help on using the changeset viewer.
