Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 5 Sep 2005 17:09:02 +0100
From:      "Greg Hennessy" <Greg.Hennessy@nviz.net>
To:        "'Sam Leffler'" <sam@errno.com>, <freebsd-pf@freebsd.org>
Subject:   RE: logging to another machine
Message-ID:  <20050905160903.49AA03A@gw2.local.net>
In-Reply-To: <431C69FE.4000100@errno.com>

next in thread | previous in thread | raw e-mail | index | archive | help

 
> [Thanks for the -l response, realized it moments after posting :)]

Yes, I scratched my head too until I figured out the -l rune LOL. 

> I don't want ascii logged, I want the binary data logged remotely. 
> Installing tcpdump on the firewall just to log stuff is way 
> overkill (though if it's there already one cares less).  I 
> build very small systems (this firewall is typically <8Mb cf 
> and ram is typically very tight too) and requiring tcpdump 
> just to log pf stuff is unacceptable.
> 
> Guess I need to roll my own logger program that reads from 
> pflog and dispatches to another machine.
> 

ISTR a pflogd patch for OBSD 3.[34] which did something similar. 

/me does a google

Ahh, here we go

http://www.klake.org/~jt/pflogd/


Greg




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20050905160903.49AA03A>