What's new

How do I monitor router for illicit traffic?

  • SNBForums Code of Conduct

    SNBForums is a community for everyone, no matter what their level of experience.

    Please be tolerant and patient of others, especially newcomers. We are all here to share and learn!

    The rules are simple: Be patient, be nice, be helpful or be gone!

ryarber

Occasional Visitor
Is there a primer somewhere on how to monitor my router and look for malicious traffic? I have an ASUS RT 68 and run Merlin firmware.
 
Probably should be a bit more specific - WAN side or LAN side?

Illicit traffic can be many things - depends on the use cases there.
 
You'd need to start logging every new connections. While some routers can do this locally, it will be quite resource-intensive, and will generally require logging to a remote syslog server. After that it would be up to you to analyze those logs.

Another option is to run something like snort on your router. Once again, this is quite resource-intensive, and might require something more capable than a standard home gateway.
 

Similar threads

Latest threads

Sign Up For SNBForums Daily Digest

Get an update of what's new every day delivered to your mailbox. Sign up here!
Top