https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=292118

            Bug ID: 292118
           Summary: Cannot log packets denied by fw_deny_unknown_exthdrs?
           Product: Base System
           Version: CURRENT
          Hardware: Any
                OS: Any
            Status: New
          Severity: Affects Only Me
          Priority: ---
         Component: kern
          Assignee: [email protected]
          Reporter: [email protected]

While the fw_deny_unknown_exthdrs sysctl is very helpful to stop unknonwn
nonsense from possible malicious intend, there seems to be no way to log these
packets, which makes the log entry only little useful as, e.g., no src/dst
addresses are available or other flags etc. from the packet header.   It would
be nice if ipfwlog for example could get a copy of these packets for further
analysis.

-- 
You are receiving this mail because:
You are the assignee for the bug.

Reply via email to