Subject: Re: ipfilter logging without ipmon
To: Conrad T. Pino <Conrad@Pino.com>
From: Dancho Penev <dpenev@mail.bg>
List: netbsd-help
Date: 01/01/2003 17:49:01
On Tue, Dec 31, 2002 at 02:04:51PM -0800, Conrad T. Pino wrote:
>From: "Conrad T. Pino" <Conrad@Pino.com>
>To: "NetBSD Help (E-mail)" <netbsd-help@netbsd.org>
>Subject: ipfilter logging without ipmon
>Date: Tue, 31 Dec 2002 14:04:51 -0800
>
>
>-----BEGIN PGP SIGNED MESSAGE-----
>Hash: SHA1
>
>I have ipfilter running using the "log" option on blocked packets.
>
>I wanted to use "ipmon -s -D" to log blocked packets to "syslogd" but had no success.  Nothing appeared in /var/log and "ipmon" kept
>writing to the console.  I'll take any suggestions about this problem.

Did you change /etc/syslog.conf to log local0.* messages in separate
file ? In my syslog.conf I have:

local0.*			/var/log/ipfilter

>
>In the mean time, can anyone shed some light on what happens if there is no "ipmon" process running to consume the output generated
>by "ipfilter"?
>
>Thanks in advance
>
>Conrad
>
>-----BEGIN PGP SIGNATURE-----
>Version: PGP 7.0.4
>
>iQA/AwUBPhIUg7NM28ubzTo9EQLduACffoScxF87Skkyav/I7m975Ebo610AoNtq
>VzcJ1wVnxn9eHDUtHfSugBId
>=SnLW
>-----END PGP SIGNATURE-----