Setup syslog for firewall log message {Scanned}

From: SW (wppiphoto_at_wppi.com)
Date: 01/06/05

  • Next message: Steve Phillips: "Re: gzip archives coming up invalid!"
    To: "Redhat Support Usergroup" <redhat-list@redhat.com>
    Date: Thu, 6 Jan 2005 16:04:43 -0500
    
    

    Hi folks,

    I'm trying to keep my /var/log/messages from getting cluttered w/ log
    messages from my firewall. So, I'm trying to setup in /etc/syslog.conf a
    different log to use for messages from my firewall. But, I can't figure out
    what I need to put in /etc/syslog.conf to acomplish this. Can anyone help?

    Here is the firewall message which are now populating my /var/log/messages:

    Jan 6 15:55:50 209.81.27.2 id=firewall sn=00B19C time="2005-01-06 15:55:57"
    fw=209.81.27.2 pri=6 c=1024 m=537 msg="Connection Closed" n=12370
    src=209.81.27.2:4657:LAN dst=130.202.101.6:137:WAN proto=udp/netbios-ns
    sent=78

    I want to move them to /var/log/firewall, so in my /etc/syslog.conf what do
    I need to put? I tried the following compinations and nothing worked:

    #Firewall messages
    firewall.* /var/log/firewall
    *.firewall /var/log/firewall
    id=firewall.* /var/log/firewall
    209.81.27.2.* /var/log/firewall
    *.209.81.27.2 /var/log/firewall

    Thanks,

    SW

    -------------------------------------------------
            WPPi.com | WPPi.Net
    -------------------------------------------------
      http://www.wppi.com | http://www.wppi.net
    -------------------------------------------------
    WPPi.com & WPPi.Net MailScanner Signature
    This message has been scanned for viruses
    and dangerous content by WPPi MailScanner,
    and has been found to be clean.
    -------------------------------------------------

    -- 
    redhat-list mailing list
    unsubscribe mailto:redhat-list-request@redhat.com?subject=unsubscribe
    https://www.redhat.com/mailman/listinfo/redhat-list
    

  • Next message: Steve Phillips: "Re: gzip archives coming up invalid!"

    Relevant Pages

    • Re: Problem about ppp -nat
      ... ipfw firewall, ... Just setup your fw of choice as if the tun0 device is the external device and leave all the nat stuff completely out of it. ... My Internet interface is rl0, ... # /etc/rc.d/routing restart ...
      (freebsd-questions)
    • Re: SBS 2003 SP1 Premium Issues (including ISA 2004 installation i
      ... If the CEICW runs then you should have the SBS 2003 SE RRAS firewall setup ... I don't have any clients that use PPPOE ... At the moment, the PPPoE connection ...
      (microsoft.public.windows.server.sbs)
    • Re: MCE 2005 Xbox 360 Extender PC Setup Cannot find Xbox 360 on Ne
      ... > You are currently talking to someone at Microsoft on the Extender team :-) ... The dump below is how my registry looks now. ... I wasn't sure what puts those registry entries there (is it setup ... This is typically due to firewall issues, ...
      (microsoft.public.windows.mediacenter)
    • Re: [SLE] filtering E-mail attaches
      ... Firewall ... I would go for a Proxy Setup for the services I will be accessing on the ... be offering to the internet. ... 2,3,4,5) As I see it, all Mail Transport Agents (postfix, sendmail) are ...
      (SuSE)
    • Re: help setting up natd and ipfw on freebsd5.2.1
      ... Thanks for all the help with setting up the natd and ipfw.. ... spend some time trying to learn how to setup the proper firewall for my ... Should I just setup ...
      (freebsd-questions)