>
> Where do I find the --log to view?
>
It logs the denys to /var/log/messages.  They will look something like this:

Apr  4 20:13:27 e-smith kernel: Packet log: denylog DENY eth1 PROTO=6
4.3.82.190:4075 208.191.8.83:515 L=60 S=0x00 I=20071 F=0x4000 T=53 SYN (#1)

For an explanation of all the parts of the line look at:
http://linuxdocs.org/HOWTOs/IPCHAINS-HOWTO-4.html

About half way down the page there is a "Logging Packets" section.

Andy Worthington
rockcity.com


Reply via email to