Good point.  I was assuming he was trying to actually pass the traffic,
but yeah, that's broadcast traffic alright.  So you are probably
correct, he just wants to clear up the logs.  Unless he has some weird
bridge & vpn setup going on (like me, DECNet in an IP world sucks), and
actually needs to be sending that broadcast traffic somewhere.  But I
would highly doubt it, I'm pretty sure I'm the first and last person to
be masochistic enough to even attempt that.

Graziano,

What exactly are you trying to do?


On Mon, 2007-01-15 at 10:32 -0800, Tom Eastep wrote:
> Bryan Vukich wrote:
> > I know, but from what I gather, eth0 is his internal nic, so I am having
> > him remove rfc1918 filtering from that interface.
> 
> If that is the case then the rules you suggest wouldn't be necessary since
> it appears that broadcasts are what are being logged. And Shorewall policy
> logging suppresses broadcast/multicast packets. I got the impression that
> the OP was simply trying to rid himself of the log clutter.
> 
> -Tom
> -------------------------------------------------------------------------
> Take Surveys. Earn Cash. Influence the Future of IT
> Join SourceForge.net's Techsay panel and you'll get the chance to share your
> opinions on IT & business topics through brief surveys - and earn cash
> http://www.techsay.com/default.php?page=join.php&p=sourceforge&CID=DEVDEV
> _______________________________________________ Shorewall-users mailing list 
> [email protected] 
> https://lists.sourceforge.net/lists/listinfo/shorewall-users
-- 
Bryan Vukich

Network Administrator
The Olson Company

Attachment: signature.asc
Description: This is a digitally signed message part

-------------------------------------------------------------------------
Take Surveys. Earn Cash. Influence the Future of IT
Join SourceForge.net's Techsay panel and you'll get the chance to share your
opinions on IT & business topics through brief surveys - and earn cash
http://www.techsay.com/default.php?page=join.php&p=sourceforge&CID=DEVDEV
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to