Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 29 Apr 1998 15:36:25 +0100
From:      Karl Pielorz <kpielorz@tdx.co.uk>
To:        isp@FreeBSD.ORG
Subject:   IPFW - Diverts, logging and capture...
Message-ID:  <35473AE9.C42190F2@tdx.co.uk>

next in thread | raw e-mail | index | archive | help
I have a number of FreeBSD boxes ranging from 2.2.2 through to
3.0-CURRENT...

I run ipfw on most of them (which should log any packets that should have
been stopped already by 'up-stream' firewalls - they generate mail when this
happens by watching /var/log/messages)

My question is - rather than just junking the packets is there any way to
actually 'capture' the rogue packets? - Or divert them onto another box
/port which 'accepts' the connection - and logs all the data / packets it
receives?

I guess at lot of this might be solved with ipfw's divert capabilities?

Regards,

Karl Pielorz

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-isp" in the body of the message



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?35473AE9.C42190F2>