From owner-freebsd-audit Fri Nov 16 9:11:58 2001 Delivered-To: freebsd-audit@freebsd.org Received: from critter.freebsd.dk (critter.freebsd.dk [212.242.86.163]) by hub.freebsd.org (Postfix) with ESMTP id 8320A37B416; Fri, 16 Nov 2001 09:11:54 -0800 (PST) Received: from critter.freebsd.dk (localhost [127.0.0.1]) by critter.freebsd.dk (8.11.6/8.11.6) with ESMTP id fAGHAQe17184; Fri, 16 Nov 2001 18:10:26 +0100 (CET) (envelope-from phk@critter.freebsd.dk) To: Sheldon Hearn Cc: ru@FreeBSD.org, audit@FreeBSD.org Subject: Re: cvs commit: src/sbin/natd natd.8 natd.c In-Reply-To: Your message of "Fri, 16 Nov 2001 19:03:15 +0200." <71658.1005930195@axl.seasidesoftware.co.za> Date: Fri, 16 Nov 2001 18:10:26 +0100 Message-ID: <17182.1005930626@critter.freebsd.dk> From: Poul-Henning Kamp Sender: owner-freebsd-audit@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.ORG In message <71658.1005930195@axl.seasidesoftware.co.za>, Sheldon Hearn writes: >> >Yuk. Wouldn't a better idea simply to make the whining more useful, >> >with something like this? >> >> You are not proposing a log message per packet that people cannot >> turn off are you ? > >I don't think that's what the patch does. I'm pretty sure it simply >enhances the previously ineffective message, leaving the conditions for >printing alone. Well, the condition for printing was "once per packet" which is why people have objected to this in the first place. >Personally, I'd like to see your new option inverted so that the default >is still to log these problems, but allow you to turn them off if you >like. And I'd like the suggested change to the actual content of the >log message. The compromise Ruslan and I ended up with when we discussed this in Brighton was that the print would be disabled unless enabled specifically and that the verbose option should also enable it, and that yes, adding useful info to it makes sense. -- Poul-Henning Kamp | UNIX since Zilog Zeus 3.20 phk@FreeBSD.ORG | TCP/IP since RFC 956 FreeBSD committer | BSD since 4.3-tahoe Never attribute to malice what can adequately be explained by incompetence. To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-audit" in the body of the message