guasca
(usa Debian)
Enviado em 30/12/2013 - 13:52h
Renato, achei o arquivo access.log, veja só utilizei o comando grep para fazer a busca pelo IP, abaixo estão algumas linhas que eu copiei, poderia me ajudar a interpretar estas linhas? Por exemplo o que seria o "TCP_DENIED"?
/var/log/squid/access.log:1388410544.271 10883 192.168.1.167 TCP_MISS/200 37197 CONNECT
www.ne2.bradesconetempresa.b.br:443 nome.usuario DIRECT/200.155.86.74 -
/var/log/squid/access.log:1388410573.160 544 192.168.1.167 TCP_MISS/200 705 GET
http://csm70-en.url.trendmicro.com/T/216/M318s8GHJ8DPmvcyKRL74Uzu4iR79nprI4Ks6DBSjWSSh0cjw1T1rbDDJ2Y... - DIRECT/177.84.167.144 text/html
/var/log/squid/access.log:1388410573.733 560 192.168.1.167 TCP_DENIED/407 1998 GET
http://bupdates.trusteer.com/rapport/agent-bin? - NONE/- text/html
/var/log/squid/access.log:1388410573.754 6 192.168.1.167 TCP_DENIED/407 2223 GET
http://bupdates.trusteer.com/rapport/agent-bin? - NONE/- text/html
/var/log/squid/access.log:1388410573.799 1 192.168.1.167 TCP_DENIED/407 1998 GET
http://bupdates.trusteer.com/rapport/agent-bin? - NONE/- text/html
/var/log/squid/access.log:1388410584.112 0 192.168.1.167 TCP_DENIED/407 1962 CONNECT
www.ne2.bradesconetempresa.b.br:443 - NONE/- text/html
/var/log/squid/access.log:1388410584.115 0 192.168.1.167 TCP_DENIED/407 2187 CONNECT
www.ne2.bradesconetempresa.b.br:443 - NONE/- text/html
/var/log/squid/access.log:1388410590.911 115 192.168.1.167 TCP_MISS/200 915 GET
http://www.bradescopj.com.br/ - DIRECT/187.59.4.11 text/html
/var/log/squid/access.log:1388410591.089 79 192.168.1.167 TCP_MISS/200 20929 GET
http://www.bradescopj.com.br/html/pessoajuridica/index.shtm - DIRECT/187.59.4.11 text/html
/var/log/squid/access.log:1388408913.611 240461 192.168.1.167 TCP_MISS/200 7036 CONNECT maps-api-ssl.google.com:443 - DIRECT/173.194.42.142 -
/var/log/squid/access.log:1388408914.486 46707 192.168.1.167 TCP_MISS/200 37148 CONNECT banklineplus.itau.com.br:443 - DIRECT/200.196.152.214 -
/var/log/squid/access.log:1388408914.723 46972 192.168.1.167 TCP_MISS/200 17330 CONNECT banklineplus.itau.com.br:443 - DIRECT/200.196.152.214 -
/var/log/squid/access.log:1388408914.830 206 192.168.1.167 TCP_MISS/200 8187 CONNECT banklineplus.itau.com.br:443 - DIRECT/200.196.152.214 -
/var/log/squid/access.log:1388408914.876 274 192.168.1.167 TCP_MISS/200 8480 CONNECT banklineplus.itau.com.br:443 - DIRECT/200.196.152.214 -
/var/log/squid/access.log:1388408914.951 325 192.168.1.167 TCP_MISS/200 9795 CONNECT banklineplus.itau.com.br:443 - DIRECT/200.196.152.214 -
/var/log/squid/access.log:1388408915.181 453 192.168.1.167 TCP_MISS/200 10661 CONNECT banklineplus.itau.com.br:443 - DIRECT/200.196.152.214 -
/var/log/squid/access.log:1388408915.519 426 192.168.1.167 TCP_MISS/200 32613 CONNECT banklineplus.itau.com.br:443 - DIRECT/200.196.152.214 -