I recently started using IP Traffic Accounting on ROS 4.6 myself. Every 5 minutes an application will get the snapshot from the RB and store it into a database. The Traffic Accounting Threshold is set to 262144 (25MB at 100 bytes per pair). It never gets close to the 262144 limit and is usually around 1000 pairs for every 5 minutes.
However I'm beginning to doubt whether all traffic is correctly accounted for.
I downloaded a large file on one of our servers yesterday from the Internet, yet when I look at the database there is hardly any data allocated to that server. It seems to have missed it completely.
Our setup is as follows:
RB1000 dials 3-4 PPPOE connections, and is connected to the company LAN via ethernet. The RB1000 is also running a transparent web proxy. The machines on the network have the RB as their default gateway and default dns, and the RB decides which PPPOE connection to use with mangling.
According to http://www.mikrotik.com/testdocs/ros/3. ... unting.php
Only the packets that enter and leave the router are accounted. Packets that are dropped in the router are not counted. Packets that are NATted on the router will be accounted for with the actual IP addresses on each side. Packets that are going through bridged interfaces (i.e. inside the bridge interface) are also counted correctly.
I have not been able to find anything with regards to IP accounting for v4 on the Wiki. Can somebody please post a link?
If this is true then I don't see why the download above would have been missed.
Thanks in advance!