From owner-freebsd-questions@FreeBSD.ORG Tue Nov 7 01:05:42 2006 Return-Path: X-Original-To: freebsd-questions@freebsd.org Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 6469316A403 for ; Tue, 7 Nov 2006 01:05:42 +0000 (UTC) (envelope-from juhasaarinen@gmail.com) Received: from wx-out-0506.google.com (wx-out-0506.google.com [66.249.82.238]) by mx1.FreeBSD.org (Postfix) with ESMTP id D85BD43D45 for ; Tue, 7 Nov 2006 01:05:41 +0000 (GMT) (envelope-from juhasaarinen@gmail.com) Received: by wx-out-0506.google.com with SMTP id i27so1142184wxd for ; Mon, 06 Nov 2006 17:05:41 -0800 (PST) DomainKey-Signature: a=rsa-sha1; q=dns; c=nofws; s=beta; d=gmail.com; h=received:message-id:date:from:to:subject:cc:in-reply-to:mime-version:content-type:content-transfer-encoding:content-disposition:references; b=A8yrioFeOP+dIt14uVAmRvR7WjnvcGQr2i2IB95ZUOaphomf74s8wEQ+0JVPFBTBsekqp9gn/OQGDnc7qkbAcELiS+Tx866qqA5pHeolgiSiqC5YX13UTLclvr7JNve2AneWTMebVNFYSxiXNVyxAqXCH/4KEFy1vtG+0uU1J8s= Received: by 10.70.76.13 with SMTP id y13mr5959525wxa.1162861540956; Mon, 06 Nov 2006 17:05:40 -0800 (PST) Received: by 10.70.24.18 with HTTP; Mon, 6 Nov 2006 17:05:40 -0800 (PST) Message-ID: Date: Tue, 7 Nov 2006 14:05:40 +1300 From: "Juha Saarinen" To: "Zbigniew Szalbot" In-Reply-To: MIME-Version: 1.0 Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit Content-Disposition: inline References: <20061106214652.GA7918@kobe.laptop> <20061106232201.GB8688@kobe.laptop> Cc: Giorgos Keramidas , freebsd-questions@freebsd.org Subject: Re: pf working but no log X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 07 Nov 2006 01:05:42 -0000 On 11/7/06, Zbigniew Szalbot wrote: > -rw-r--r-- 1 root wheel - 0 Nov 6 19:24 /var/log/pflog > > I created the file by using touch command. Thanks! That file should be a pcap file: $ sudo file /var/log/pflog /var/log/pflog: tcpdump capture file (little-endian) - version 2.4 (OpenBSD PFLOG, capture length 116) What do you see if you do: $sudo /etc/rc.d/pf status -- Juha http://www.geekzone.co.nz/juha