Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 9 Sep 2003 21:42:14 +1000
From:      John Birrell <jb@cimlogic.com.au>
To:        Wayne Pascoe <freebsd-questions@penguinpowered.org>
Cc:        freebsd-questions@freebsd.org
Subject:   Re: Logging and IPFW
Message-ID:  <20030909114214.GC49415@freebsd1.cimlogic.com.au>
In-Reply-To: <20030909113447.GB17219@marvin.penguinpowered.org>
References:  <20030909113447.GB17219@marvin.penguinpowered.org>

next in thread | previous in thread | raw e-mail | index | archive | help
On Tue, Sep 09, 2003 at 12:34:47PM +0100, Wayne Pascoe wrote:
> However, I am still not seeing anything in /var/log/messages when I
> portscan the machine. The firewall appears to be working, as we receive
> nothing back on the portscanning machine, but I would like logging
> enabled. 

Have you added the 'log' keyword to your rules?

e.g:

        # Reject&Log all setup of incoming connections from the outside
        ${fwcmd} add deny log tcp from any to any in via ${oif} setup

The log entries will be written to /var/log/security.

-- 
John Birrell



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20030909114214.GC49415>