# Auditing bandwidth usage?

**URL:** <https://openziti.discourse.group/t/auditing-bandwidth-usage/3969>\
**Category:** zrok\
**Created:** [February 15, 2025, 12:56am UTC](https://openziti.discourse.group/t/auditing-bandwidth-usage/3969 "2025-02-15T00:56:44Z")\
**Posts on this page:** 3\
**Page:** 1

<div class="post-metadata">

**Author:** ![chaos](https://avatars.discourse-cdn.com/v4/letter/c/9d8465/32.png) [@chaos](https://openziti.discourse.group/u/chaos)\
**Post date:** [February 15, 2025, 12:56am UTC](https://openziti.discourse.group/t/auditing-bandwidth-usage/3969/1 "2025-02-15T00:56:44Z")

</div>

I have a reserved vpn setup between two environments. zRok said I received 5GB today (one day) and limited my account. I don't think I sent anywhere near that amount, but who knows?

Is there a way (Linux in general, or zRok specific) where I can get a breakdown of what that traffic was?

---

<div class="post-metadata">

**Author:** ![michael.quigley](https://yyz2.discourse-cdn.com/free1/user_avatar/openziti.discourse.group/michael.quigley/32/1123_2.png) [@michael.quigley](https://openziti.discourse.group/u/michael.quigley)\
**Post date:** [February 15, 2025, 2:08am UTC](https://openziti.discourse.group/t/auditing-bandwidth-usage/3969/2 "2025-02-15T02:08:54Z")

</div>

If you log into the web console, under your account, each environment you have, and under each share, there is a "metrics" tab, which shows 30 day, 7 day and 24 hour traffic graphs.

There is not currently a specific packet-by-packet auditing of traffic utilization, however.

The traffic metrics are delivered from the underlying OpenZiti network.

---

<div class="post-metadata">

**Author:** ![michael.quigley](https://yyz2.discourse-cdn.com/free1/user_avatar/openziti.discourse.group/michael.quigley/32/1123_2.png) [@michael.quigley](https://openziti.discourse.group/u/michael.quigley)\
**Post date:** [February 15, 2025, 2:10am UTC](https://openziti.discourse.group/t/auditing-bandwidth-usage/3969/3 "2025-02-15T02:10:16Z")

</div>

If you're using the VPN backend, you can probably run interface statistics against the `tun0` (or other) tun interface you're using for the VPN. That might be able to give you some additional insight into what each side of the communication believes they've sent/received.
