测试网站返回:
telnet www.sdsd.com 80
GET / HTTP/1.1
查看是否有ARP啥的:
bzcat messages.0.bz2 | grep arp
tcpdump -i em0
让网卡不响应 arp 请求:
绑定网关的MAC然后
ifconfig em0 -arp
ifconfig em0 arp
防火墙 控制ARP
net.link.ether.ipfw=1
add allow ip from any to any via em1
add allow mac any e0:24:7f:15:f0:60 via em0
add allow mac e0:24:7f:15:f0:60 any via em0
add deny mac any any via em0
add allow ip from any to any
某时间段日志
sed
-n
'/15:32:30/,/16:12:09/p'
access_log