Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 5 Sep 1997 16:48:16 +0400 (MSD)
From:      ArkanoiD <ark@paranoid.convey.ru>
To:        robert+freebsd@cyrus.watson.org
Cc:        pdongre@opentech.stpn.soft.net, firewalls@greatcircle.com, freebsd-security@FreeBSD.ORG, freebsd-hackers@FreeBSD.ORG
Subject:   Re: log connection attempts?
Message-ID:  <199709051248.QAA01192@paranoid.convey.ru>
In-Reply-To: <Pine.BSF.3.96.970904103344.1543B-100000@cyrus.watson.org> from "Robert Watson" at Sep 4, 97 10:35:11 am

next in thread | previous in thread | raw e-mail | index | archive | help
nuqneH,

> > No , (btw i use IPFilter,not ipfw), do not want to log blocked packets/
> > create additional filtering rules etc. As i said i do know how to do that.
> > I just do not want to. I want to log connection attempts without that.
> 
> Take a look at these two locations -- there was mention of a better syslog
> here on freebsd-security recently.  There were also statistics-gathering
> modifications on disconnected ports.
> 
> http://minnie.cs.adfa.oz.au/Seminars/AUUG96/index.html
> ftp://minnie.cs.adfa.oz.au/pub/NetSecurity/

Thanks! That's [nearly] the thing i was looking for. Actually it is for an
older kernel version and requires minor modifications to be used with 2.1.7.1
but it should not be hard to do.

-- 
                                       _     _  _  _  _      _  _
   {::} {::} {::}  CU in Hell          _| o |_ | | _|| |   / _||_|   |_ |_ |_
   (##) (##) (##)        /Arkan#iD    |_  o  _||_| _||_| /   _|  | o |_||_||_|
   [||] [||] [||]            Do i believe in Bible? Hell,man,i've seen one!



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?199709051248.QAA01192>