IPChains Protokolle tauchen nicht in Messages auf.
Hallo zusammen, ich habe eine IPChains basierte Firewall und einige Probleme die ich auf IP Blocks zurückführe. Jetzt wollte ich den Traffik begutachten. Dafür habe ich mir bereits bei anlegen der Firewall zwei Dateien (ipchains-rules und ipchains-rules.log) eingerichtet. Die eine mit Flag l gesetzt. Die andere nicht. Über ein alias lösche ich die rules und lese die gewünschte Datei ein. Warum taucht in /var/log/messages dennoch kein Eintrag auf? Gruss, Marco P.S.: Die Anzeige sieht jetzt so aus: target prot opt source destination ports ACCEPT tcp ----l- anywhere linux.team.intra any -> any ACCEPT udp ----l- anywhere linux.team.intra any -> any ACCEPT all ----l- localhost.team.intra localhost.team.intra n/a ACCEPT icmp ----l- anywhere anywhere any -> any ACCEPT udp ----l- anywhere anywhere domain -> any ACCEPT udp ----l- anywhere anywhere any -> domain ACCEPT udp ----l- anywhere anywhere http -> any ACCEPT udp ----l- anywhere anywhere any -> http ACCEPT tcp ----l- anywhere anywhere http -> any ACCEPT tcp ----l- anywhere anywhere any -> http ACCEPT udp ----l- anywhere anywhere ftp-data:ssh -> any ACCEPT udp ----l- anywhere anywhere any -> ftp-data:ssh ACCEPT tcp ----l- anywhere anywhere ftp-data:ssh -> any ACCEPT tcp ----l- anywhere anywhere any -> ftp-data:ssh ACCEPT udp ----l- anywhere anywhere smtp -> any ACCEPT udp ----l- anywhere anywhere any -> smtp ACCEPT tcp ----l- anywhere anywhere smtp -> any ACCEPT tcp ----l- anywhere anywhere any -> smtp ACCEPT tcp ----l- anywhere anywhere pop3 -> any ACCEPT tcp ----l- anywhere anywhere any -> pop3 ACCEPT udp ----l- anywhere anywhere pop3 -> any ACCEPT udp ----l- anywhere anywhere any -> pop3 ACCEPT tcp ----l- anywhere anywhere imap2 -> any ACCEPT tcp ----l- anywhere anywhere any -> imap2 ACCEPT udp ----l- anywhere anywhere imap2 -> any ACCEPT udp ----l- anywhere anywhere any -> imap2 ACCEPT tcp ----l- anywhere anywhere https -> any ACCEPT tcp ----l- anywhere anywhere any -> https ACCEPT udp ----l- anywhere anywhere https -> any ACCEPT udp ----l- anywhere anywhere any -> https ACCEPT udp ----l- anywhere anywhere bootps -> bootpc ACCEPT udp ----l- anywhere anywhere bootpc -> bootps ACCEPT tcp ----l- anywhere anywhere bootps -> bootpc ACCEPT tcp ----l- anywhere anywhere bootpc -> bootps ACCEPT udp ----l- anywhere anywhere netbios-ns:netbios-ssn -> netbios-ns:netbi os-ssn ACCEPT udp ----l- anywhere anywhere netbios-ns:netbios-ssn -> netbios-ns:netbi os-ssn ACCEPT tcp ----l- anywhere anywhere netbios-ns:netbios-ssn -> netbios-ns:netbi os-ssn ACCEPT tcp ----l- anywhere anywhere netbios-ns:netbios-ssn -> netbios-ns:netbi os-ssn ACCEPT udp ----l- anywhere anywhere any -> 113 ACCEPT tcp ----l- anywhere anywhere any -> auth ACCEPT tcp ----l- anywhere anywhere nicname -> any ACCEPT tcp ----l- anywhere anywhere any -> nicname ACCEPT udp ----l- anywhere anywhere nicname -> any ACCEPT udp ----l- anywhere anywhere any -> nicname Chain forward (policy DENY): target prot opt source destination ports MASQ all ----l- localnet/24 anywhere n/a Chain output (policy DENY): target prot opt source destination ports ACCEPT all ----l- anywhere anywhere n/a - Hinweise zur Benutzung dieser (und anderer Mailing-Listen) bitte beachten: --> http://lug-owl.de/mailinglist_hints.html <--
Teilnehmer (1)
-
mm@marcomeier.de