Subject: Re: pflog on NetBSD
To: Jeremy C. Reed <firstname.lastname@example.org>
From: Brian A. Seklecki <email@example.com>
Date: 09/18/2006 08:27:23
Good call. I'll try Pkgsrc.
On Fri, 15 Sep 2006, Jeremy C. Reed wrote:
>> On the same subject, has anyone noticed the different format of pflog(4) on
>> NetBSD v.s. OpenBSD. Specifically, for ICMP/TCP/UDP, the type/port is absent
>> from the source/destination address:
>> OpenBSD pflog(4) line:
>> Sep 15 21:47:46.420650 rule 0/(match) block out on vlan40:
>> 220.127.116.11.62343 > 18.104.22.168.80: R 1515499462:1515499462(0) ack
>> 2101925191 win 0
>> NetBSD pflog(4) line:
>> 015133 rule 0/0(match): block in on fxp0: IP 22.214.171.124 > 126.96.36.199:
>> TCP/UDP port = missing
>> This is with: # tcpdump -ttt -e -vvv -i pflog0 -e -n on both.
>> I'll open a PR.
> The tcpdump code (such as print-pflog.c) is different. Maybe updating will
> correct this?
-lava (Brian A. Seklecki - Pittsburgh, PA, USA)
"...from back in the heady days when "helpdesk" meant nothing, "diskquota"
meant everything, and lives could be bought and sold for a couple of pages
of laser printout - and frequently were."