[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Ipchains and connection to ISP



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Udo Klein said:
> Thanks Phil,
> 
> I've now allowed dhcp in from the ISP and it works. Can I ask you one 
> more question: is it possible to direct the ipchains log to a file other 
> than /var/log/kern.log (e.g. /var/log/ipchains.log), so that kern.log 
> doesn't get filled up with ipchains log messages? Udo

ipchains uses kernel logging to log packets (kern.*). I think ipchains
uses level info by default, so you could tweak syslog.conf to log
kern.info to some other file, but it's still not going to be perfect.
kern.log is the right place, imho to log the firewall packets. For the
most part, other than a reboot, your kern.log is /mostly/ only going to
contain firewall messages, so just look for them there. iptables
supports user space logging for more control, but I've never found a
need to mess with it yet.

- --

/phil


-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.0 (MingW32)
Comment: Public Key: http://www.dyermaker.org/gpgkey

iD8DBQFCUUGPGbd/rBLcaFwRAgHlAKCv16qpZ/LWuhctZTXz/1RS6pz6cQCfSgNB
nYp7gCXlqvQY5vNQHrjZR90=
=+Rmn
-----END PGP SIGNATURE-----



Reply to: