Le Thu, 26 Oct 2023 19:20:06 -0000 (UTC), Christophe PEREZ a écrit :

> I'll see how the logs evolve from now on.

I still have them:
Oct 26 21:47:33 myserver kernel: [1631569.333297] fw-net REJECT IN= 
OUT=eth0 SRC=myserverip DST=oneclientip LEN=1500 TOS=0x00 PREC=0x00 TTL=64 
ID=9856 DF PROTO=TCP SPT=465 DPT=36590 WINDOW=507 RES=0x00 ACK URGP=0 
Oct 26 21:48:01 myserver kernel: [1631597.492820] fw-net REJECT IN= 
OUT=eth0 SRC=myserverip DST=oneclientip LEN=1500 TOS=0x00 PREC=0x00 TTL=64 
ID=9857 DF PROTO=TCP SPT=465 DPT=36590 WINDOW=507 RES=0x00 ACK URGP=0 
Oct 26 21:48:59 myserver kernel: [1631655.347651] fw-net REJECT IN= 
OUT=eth0 SRC=myserverip DST=oneclientip LEN=1500 TOS=0x00 PREC=0x00 TTL=64 
ID=9858 DF PROTO=TCP SPT=465 DPT=36590 WINDOW=507 RES=0x00 ACK URGP=0 
Oct 26 21:50:54 myserver kernel: [1631770.033392] fw-net REJECT IN= 
OUT=eth0 SRC=myserverip DST=oneclientip LEN=1500 TOS=0x00 PREC=0x00 TTL=64 
ID=9859 DF PROTO=TCP SPT=465 DPT=36590 WINDOW=507 RES=0x00 ACK URGP=0 
Oct 26 21:52:05 myserver kernel: [1631841.220205] fw-net REJECT IN= 
OUT=eth0 SRC=myserverip DST=oneclientip LEN=52 TOS=0x00 PREC=0x00 TTL=64 
ID=9860 DF PROTO=TCP SPT=465 DPT=36590 WINDOW=507 RES=0x00 ACK FIN URGP=0

Do I need to add ":$LOG_LEVEL" as:
REJECT_DEFAULT="Broadcast(DROP),Multicast(DROP),dropInvalid:$LOG_LEVEL"
?

I humbly admit that I didn't understand much about the option.



_______________________________________________
Shorewall-users mailing list
Shorewall-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to