Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 16 Jan 2002 16:46:38 -0600
From:      Dustin Puryear <dpuryear@usa.net>
To:        freebsd-isp@freebsd.org
Subject:   Firewall logs non-existent?
Message-ID:  <5.1.0.14.0.20020116164616.03528248@pop.netaddress.com>

next in thread | raw e-mail | index | archive | help
I am running a FreeBSD based firewall using ipfw. For some reason denies 
are not being reported to /var/log/security. I am still a bit new to ipfw 
so it is entirely possible I have goofed somewhere, but I am still looking 
for a bit of help. Naturally, it is very hard to diagnose firewall issues 
when I can't tell if my firewall is dropping the packets.

Currently, we have:

# Reject&Log all setup of incoming connections from the outside
ipfw add deny log tcp from any to any in via rl0 setup

At the end of our rules. Is tihs correct? rl0 is our external interface. 
Also, what about logging udp denies?

Regards, Dustin
---
Dustin Puryear <dpuryear@usa.net>
Information Systems Consultant
http://members.telocity.com/~dpuryear
In the beginning the Universe was created.
This has been widely regarded as a bad move. - Douglas Adams


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-isp" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?5.1.0.14.0.20020116164616.03528248>