Re: Firewall logging in Red Hat 9

From: Randy Crawford (joe_at_burgershack.com)
Date: 03/06/04


Date: Sat, 06 Mar 2004 08:33:37 GMT

J.O. Aho wrote:
> M_F_H wrote:
>
>> Another question: How does one set the verbosity of firewall activity
>> reported to /var/log/messages? My /etc/syslog.conf file says nothing
>> about iptables.
>
>
> you have 100% already

Yup. Actually, the hard part is turning the logging down or off. The
method used in Linux to manage logging could use a lot of improvement,
IMHO. I gave up on using netfilter since it was logging every packet,
which is, for most of us wanting just a firewall, nuts.

     Randy

-- 
Randy Crawford   http://www.ruf.rice.edu/~rand   rand AT rice DOT edu


Relevant Pages

  • Re: susefirewall2 logging
    ... I'm using 9.3 and syslog-ng filters the iptables output to one file ... SuSEfirewall2 by default and will be logged. ... is, at the bottom, an example of a iptable rule which prevents logging ... of any udp packets coming in, or going out from any interface on ports ...
    (alt.os.linux.suse)
  • Re: Linux masquerading
    ... All I see here are a lot of iptables filtering logs. ... packet-filtering rules. ... you could disable logging in your iptables rules and run ... If that is where your filtering rules are set up, you could then, as ...
    (comp.os.linux)
  • Re: IPTABLES logging (was: NTP, ntpdate and ISP-based firewall)
    ... > To log all events of INFO or higher priority that meet those input criteria. ... I find that logging from iptables is ugly and difficult to read, ... I tell anything kernel* level of syslog to be logged in a file ... Logging from iptables also tends to generate a big log file, ...
    (Fedora)
  • Re: [patch 1/2] [RFC] Simple tamper-proof device filesystem.
    ... from logging in, e.g. using iptables or changing the password. ... BTW, tmpfs with root marked append-only and populated in normal ways on boot ...
    (Linux-Kernel)
  • iptables & syslog help
    ... I'm having problems with logging from iptables, ... I'm trying to log some packets ... seem to be showing up on the console, ...
    (Debian-User)