Hi,
I just have one quick question on the "log failures" below.
I only added the log option in all "block" rules.
It seems that all blocked packets are logged, but why there are some log
failures? And how could it happen?
Thanks,
root> ipfstat
bad packets: in 0 out 0
IPv6 packets: in 0 out 0
input packets: blocked 83192 passed 2908858 nomatch 10 counted
0 short 0
output packets: blocked 28 passed 1812303 nomatch 5 counted 0
short 0
input packets logged: blocked 83192 passed 0
output packets logged: blocked 28 passed 0
packets logged: input 0 output 0
log failures: input 229 output 0
fragment state(in): kept 0 lost 0 not fragmented 0
fragment state(out): kept 0 lost 0 not fragmented 0
packet state(in): kept 7618 lost 0
packet state(out): kept 49700 lost 1
ICMP replies: 0 TCP RSTs sent: 0
Invalid source(in): 0
Result cache hits(in): 21585 (out): 80335
IN Pullups succeeded: 24394 failed: 0
OUT Pullups succeeded: 20 failed: 0
Fastroute successes: 0 failures: 0
TCP cksum fails(in): 0 (out): 0
IPF Ticks: 39957
Packet log flags set: (0)
none