Forums

Brad Zaz
Brad Zaz
Offline
Resolved
0 votes
I would like to monitor the dns names and IP addresses a specific device on my network is trying access. How can I do that? I have looked through the menus and on the markset place but I have not noticed anything that seems to give me the information I am looking for.

Thanks in advance.
In Gateway
Friday, June 01 2018, 11:58 PM
Share this post:
Responses (1)
  • Accepted Answer

    Saturday, June 02 2018, 08:18 AM - #Permalink
    Resolved
    0 votes
    I don't think you can normally monitor traffic that. Once a device gets an IP address and it tries to communicate with another device by IP address, if they are on the same subnet, then the IP traffic gets handled by any switch you have and does not touch ClearOS.

    If ClearOS is your LAN's DNS server, it is possible to set up DNS logging in ClearOS so you can see every DNS lookup done by a host but it gives massive logs. Look at the "log-queries" option in "man dnsmasq.conf". It you add an options it is best to add them you own file in /etc/dnsmasq.d/. All files here will be read when dnsmasq restarts.
    The reply is currently minimized Show
Your Reply