IPfilter
[Top] [All Lists]

Re: - Re: Where did I go wrong?

To: Phil Dibowitz <phil@ipom.com>
Subject: Re: - Re: Where did I go wrong?
From: mdpeters <mdpeters@lazarusalliance.com>
Date: Wed, 17 Jan 2007 13:12:52 -0500
Cc: ipfilter@coombs.anu.edu.au
Delivered-to: sp-com-lists@consult.net
Delivered-to: ipfilter-list@securepoint.com
In-reply-to: <45AE58CC.7060501@ipom.com>
References: <45AD8F4E.7070903@lazarusalliance.com> <45ADB1CA.3040205@ipom.com> <45AE09B7.2070903@lazarusalliance.com> <45AE1960.5040800@lazarusalliance.com> <45AE58CC.7060501@ipom.com>
Sender: owner-ipfilter@coombs.anu.edu.au
User-agent: Mozilla Thunderbird 1.0.7 (Windows/20050923)
I am getting syslogging messages now. I have to wait until the evening to test it live again.

Do the other rules look fine to you? I am used to other products like Checkpoint. If there is a cleaner way I would like to hear about it.

NAT hosts are in various networks internally. I might have one in the DMZ right off one ipfilter interface while another host sits on the LAN.

Thanks for the logging tip. The obvious right?

Phil Dibowitz wrote:
mdpeters wrote:

I forgot to add this to my last message.

# svcs | egrep '(pfil|ipfilter)'
online         Jan_08   svc:/system/rmtmpfiles:default
online          7:15:21 svc:/network/pfil:default
online          7:15:27 svc:/network/ipfilter:default

I had to fix my syslogd.conf file. I had spaces instead of tab delimited
spaces applied to the /var/log/ipfilter.log line.


And now that you fixed syslog and restarted it, do you get additional logs?

Your problem is this:


messages.1:16886:Jan  7 22:23:35 Osiris ipfilter: [ID 702911
daemon.warning] pfil not plumbed on any network interfaces.
messages.1:16887:Jan  7 22:23:35 Osiris ipfilter: [ID 702911
daemon.warning] No network traffic will be filtered.


This usually means you haven't rebooted since you installed.


<Prev in Thread] Current Thread [Next in Thread>