From owner-freebsd-questions Mon Feb 19 13:54:56 2001 Delivered-To: freebsd-questions@freebsd.org Received: from mailhost01.reflexnet.net (mailhost01.reflexnet.net [64.6.192.82]) by hub.freebsd.org (Postfix) with ESMTP id BAE8D37B4EC for ; Mon, 19 Feb 2001 13:54:54 -0800 (PST) Received: from rfx-216-196-73-168.users.reflexcom.com ([216.196.73.168]) by mailhost01.reflexnet.net with Microsoft SMTPSVC(5.5.1877.197.19); Mon, 19 Feb 2001 13:53:01 -0800 Received: (from cjc@localhost) by rfx-216-196-73-168.users.reflexcom.com (8.11.1/8.11.1) id f1JLsn970958; Mon, 19 Feb 2001 13:54:49 -0800 (PST) (envelope-from cjc) Date: Mon, 19 Feb 2001 13:54:49 -0800 From: "Crist J. Clark" To: Tony Wells Cc: questions@FreeBSD.ORG Subject: Re: IPFirewall & syslogd Message-ID: <20010219135449.A70899@rfx-216-196-73-168.users.reflex> Reply-To: cjclark@alum.mit.edu References: <3A8D846F.8824EEB9@journalstar.com> <20010218001901.F62368@rfx-216-196-73-168.users.reflex> <3A914E07.DF2E62EF@journalstar.com> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline User-Agent: Mutt/1.2.5i In-Reply-To: <3A914E07.DF2E62EF@journalstar.com>; from awells@journalstar.com on Mon, Feb 19, 2001 at 10:47:03AM -0600 Sender: owner-freebsd-questions@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.ORG On Mon, Feb 19, 2001 at 10:47:03AM -0600, Tony Wells wrote: > I didn't add anything, I guess I assumed the default "security" line > would catch it. Since it's a kernel thing and not a process, I'm not > sure what I would put in syslogd to catch the messages. ipfw logs to security.info. If you have the default security entry in /etc/syslog.conf, security.* /var/log/security It should be logging them. Does the file /var/log/security exist? You can catch ipfw only by adding, !ipfw As the "program" name. -- Crist J. Clark cjclark@alum.mit.edu To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-questions" in the body of the message