Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 20 Aug 2002 15:17:08 -0500
From:      "Michael J. Turner" <mike@inethouston.net>
To:        <freebsd-questions@FreeBSD.ORG>
Subject:   IPMON
Message-ID:  <00f701c24886$8f3aad00$f100a8c0@rns02>

next in thread | raw e-mail | index | archive | help

[-- Attachment #1 --]
Hi im trying to get ipmon to start logging. Im running

4.5-STABLE FreeBSD. 

I have ipf in my kernel via
options         IPFILTER                #ipfilter support
options         IPFILTER_LOG        #ipfilter logging

and i have it enabled via
enable_ipmon="YES"

in syslog.conf i have
Local0.*                                        /var/log/ipf.log
Local1.*                                        /var/log/ipf.log
security.*                                      /var/log/ipf.log

The file ipf.log does exisit in /var/log.
I've tried killing syslogd and all sorts of stuff.
Im even loging things such as AIM, port 80,
and my denys, which should make a big log fast.
Yet i havent seen a log yet. Any ideas?





Michael mike@inethouston.net
<RainTree Network Services>

h4x0r3d.

[-- Attachment #2 --]
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
<HTML><HEAD>
<META http-equiv=Content-Type content="text/html; charset=iso-8859-1">
<META content="MSHTML 6.00.2716.2200" name=GENERATOR>
<STYLE></STYLE>
</HEAD>
<BODY bgColor=#ffffff>
<DIV><FONT face=Arial size=2>Hi im trying to get ipmon to start logging. Im 
running</FONT></DIV>
<DIV><FONT face=Arial size=2></FONT>&nbsp;</DIV>
<DIV><FONT face=Arial size=2>4.5-STABLE FreeBSD. </FONT></DIV>
<DIV><FONT face=Arial size=2></FONT>&nbsp;</DIV>
<DIV><FONT face=Arial size=2>I have ipf in my kernel via</FONT></DIV>
<DIV><FONT face=Arial 
size=2>options&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 
IPFILTER&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 
#ipfilter support<BR>options&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 
IPFILTER_LOG&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; #ipfilter 
logging<BR></DIV></FONT>
<DIV><FONT face=Arial size=2>and i have it enabled via</FONT></DIV>
<DIV><FONT face=Arial size=2>enable_ipmon="YES"</FONT></DIV>
<DIV><FONT face=Arial size=2></FONT>&nbsp;</DIV>
<DIV><FONT face=Arial size=2>in syslog.conf i have</DIV></FONT>
<DIV><FONT face=Arial 
size=2>Local0.*&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 
/var/log/ipf.log<BR>Local1.*&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 
/var/log/ipf.log<BR>security.*&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 
/var/log/ipf.log<BR></FONT><FONT face=Arial size=2></FONT></DIV>
<DIV><FONT face=Arial size=2>The file ipf.log does exisit in 
/var/log.</FONT></DIV>
<DIV><FONT face=Arial size=2>I've tried killing syslogd and all sorts of 
stuff.</FONT></DIV>
<DIV><FONT face=Arial size=2>Im even loging things such as AIM, port 
80,</FONT></DIV>
<DIV><FONT face=Arial size=2>and my denys, which should make a big log 
fast.</FONT></DIV>
<DIV><FONT face=Arial size=2>Yet i havent seen a log yet. Any 
ideas?</FONT></DIV>
<DIV>&nbsp;</DIV>
<DIV><FONT face=Arial size=2></FONT>&nbsp;</DIV>
<DIV><FONT face=Arial size=2></FONT>&nbsp;</DIV>
<DIV><FONT face=Arial size=2></FONT>&nbsp;</DIV>
<DIV><FONT face=Arial size=2>&nbsp;</DIV></FONT>
<DIV><FONT face=Arial size=2>Michael <A 
href="mailto:mike@inethouston.net">mike@inethouston.net</A><BR>&lt;RainTree 
Network Services&gt;</FONT></DIV>
<DIV>&nbsp;</DIV>
<DIV><FONT face=Arial size=2>h4x0r3d.</FONT></DIV></BODY></HTML>

Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?00f701c24886$8f3aad00$f100a8c0>