From owner-freebsd-current@FreeBSD.ORG Tue Sep 20 21:16:50 2005 Return-Path: X-Original-To: freebsd-current@freebsd.org Delivered-To: freebsd-current@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id F050716A41F for ; Tue, 20 Sep 2005 21:16:50 +0000 (GMT) (envelope-from mikej@rogers.com) Received: from smtp100.rog.mail.re2.yahoo.com (smtp100.rog.mail.re2.yahoo.com [206.190.36.78]) by mx1.FreeBSD.org (Postfix) with SMTP id 634C443D49 for ; Tue, 20 Sep 2005 21:16:50 +0000 (GMT) (envelope-from mikej@rogers.com) Received: (qmail 38156 invoked from network); 20 Sep 2005 21:16:49 -0000 DomainKey-Signature: a=rsa-sha1; q=dns; c=nofws; s=s1024; d=rogers.com; h=Received:Message-ID:Date:Subject:From:To:User-Agent:MIME-Version:Content-Type:Content-Transfer-Encoding; b=LOHmgn+VVRCpG7zEa/ge7UiexJeumg09qO2TUlgk0ZToDY4uMEVVvLrMlkuFdPohaAGS6kGzN1scE4Tyjdnf4tALPsdmXiQ+/3zU6gjbuGldizz9JNLGVcEMKmMCNxX64hLgU8RF8U5Pm6eZnAdU4uqJpvly1pb3404X/5mmpms= ; Received: from unknown (HELO 172.16.0.1) (mikej@70.31.50.81 with login) by smtp100.rog.mail.re2.yahoo.com with SMTP; 20 Sep 2005 21:16:49 -0000 Received: from 172.16.0.199 (SquirrelMail authenticated user mikej) by 172.16.0.1 with HTTP; Tue, 20 Sep 2005 17:16:45 -0400 (EDT) Message-ID: <3996.172.16.0.199.1127251005.squirrel@172.16.0.1> Date: Tue, 20 Sep 2005 17:16:45 -0400 (EDT) From: "Mike Jakubik" To: freebsd-current@freebsd.org User-Agent: SquirrelMail/1.5.1 [CVS] MIME-Version: 1.0 Content-Type: text/plain;charset=iso-8859-1 Content-Transfer-Encoding: 8bit Subject: ipfw in daily security run X-BeenThere: freebsd-current@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: Discussions about the use of FreeBSD-current List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 20 Sep 2005 21:16:51 -0000 I get the following in my daily security run email: --- fbsd.local pf denied packets: +++ /tmp/security.3Nfo4MZX Tue Sep 20 03:06:03 2005 +block drop in log quick on xl0 inet proto tcp from x.x.0.0/16 to (xl0) [ Evaluations: 8137348 Packets: 0 Bytes: 0 States: 0 ] ... ipfw: getsockopt(IP_FW_GET): Protocol not available --- My question is, why is ipfw in the pf denied packets log? As the message suggests, i do not use ipfw or have it compiled in to the kernel. Thanks.