[Date Prev][Date Next][Thread Prev][Thread Next][Thread Index]

Re: [fw1-gurus] log traffic from/to a machine




hi,

in case you have accept and drop-rules for one client the only option is to additional rules with accept/drop with log in front of the existing rules.

other options are fw monitor or tcpdump. it depends on what you need to do with the logs you get for that.

for debugging I prefer tcpdump or fw monitor...

br
reinhard

At 14:49 27.01.2009, Andreas Moroder wrote:
Hello,

we don't like to enable loggin on all rules, on the other side for bugtracking it would be a big thing to get the log of all the traffic to and from one address. Is it possible to create such a rule that does nothing but loggin and dos not allow or disallow this traffic or is tcpdump the only option ?

Thanks
Andreas

_______________________________________________
fw1-gurus mailing list
fw1-gurus@xxxxxxxxxxxxxxxxxx
http://lists.phoneboy.com/listinfo.cgi/fw1-gurus-phoneboy.com

--
Reinhard Stich          r.stich@xxxxxxxxxxxxxxxxxxxx
Internet Security AG, 1100 Wien, Wienerbergstrasse 9
Tel: +43 1 3709440 RS784-RIPE Fax: +43 1 3709440-333
_______________________________________________
fw1-gurus mailing list
fw1-gurus@xxxxxxxxxxxxxxxxxx
http://lists.phoneboy.com/listinfo.cgi/fw1-gurus-phoneboy.com