Hi Group,
Congratulation about shorewall.org !
No question shorewall is the best tool I know for playing with iptables
rules!
Second I wonder if any one can help me with the following:
1. I'm trying to configure a rule with the NFLOG option.
I manage to make it work with ULOG withouy any problem, but making it with
NFLOG doesn't seems to work :-(
My question is if the netfilter userspace log daemon (ULOG) knows how to
capture NFLOG msg.
At the moment I'm using ULOG version 1.X.
Is this only supported via ULOG version 2.0?
I'm using ulog version 1 cause this is the native version my CentOS machine
support, and install it from source requires me to update a lot of packages
with I want to avoid.
2. What is the true different between ULOG to NFLOG?
3. I'm not sure I got it right from the documentation at
http://www.shorewall.net/shorewall_logging.html
Where I configure the shorewall LEVEL?
It says is has the following:
*debug,info,error, etc....*
but I don't see where to change it under the shore-wall configuration
4. A rule like this
ACCEPT:info(tcp_options,ip_options,macdecode,tcp_sequence) fw all
all
Doesn't seems to work.
I'm getting Invalid log level
(info(tcp_options,ip_options,macdecode,tcp_sequence)
Why? any idea?
5. Under ULOG, u have the option to configure nlgroup. the default is 1,
but say I want to have nlgroup=2 and nlgroup=3, so nlgroup=1 will save logs
to file 1.log nlgroup=2 to 2.log and 3=nlgroup. How can it be done? is this
mean I need run 3 different ULOG process?
I didn't manage to find how to do it in ulog.conf
Thanks
Sassy
------------------------------------------------------------------------------
Android is increasing in popularity, but the open development platform that
developers love is also attractive to malware creators. Download this white
paper to learn more about secure code signing practices that can help keep
Android apps secure.
http://pubads.g.doubleclick.net/gampad/clk?id=65839951&iu=/4140/ostg.clktrk
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users