Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 21 Jan 2016 14:35:19 +0000
From:      bugzilla-noreply@freebsd.org
To:        freebsd-bugs@FreeBSD.org
Subject:   [Bug 206467] 520.pfdenied does not reset counters every day
Message-ID:  <bug-206467-8@https.bugs.freebsd.org/bugzilla/>

next in thread | raw e-mail | index | archive | help
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D206467

            Bug ID: 206467
           Summary: 520.pfdenied does not reset counters every day
           Product: Base System
           Version: 11.0-CURRENT
          Hardware: Any
                OS: Any
            Status: New
          Severity: Affects Many People
          Priority: ---
         Component: conf
          Assignee: freebsd-bugs@FreeBSD.org
          Reporter: rick@cello.net

Created attachment 165917
  --> https://bugs.freebsd.org/bugzilla/attachment.cgi?id=3D165917&action=
=3Dedit
520.pfdenied patch to add -z flag

/etc/periodic/security/520.pfdenied produces reports based on /var/log/pf.t=
oday
and /var/log/pf.yesterday

This implies that the counts in the report are for one day only.

The counter is never reset, so the counts are cumulative and therefore not
particularly useful as reported.

Add the "-z" flag to the pfctl command in 520.pf.denied so that the stats a=
re
zeroed daily

--=20
You are receiving this mail because:
You are the assignee for the bug.=



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?bug-206467-8>