IPChains Protokolle tauchen nicht in Messages auf.

mm at marcomeier.de mm at marcomeier.de
Fri Jul 21 16:31:33 CEST 2000


Hallo zusammen,

ich habe eine IPChains basierte Firewall und einige Probleme die ich auf IP
Blocks zurückführe.
Jetzt wollte ich den Traffik begutachten. Dafür habe ich mir bereits bei
anlegen der Firewall
zwei Dateien (ipchains-rules und ipchains-rules.log) eingerichtet. Die eine
mit Flag l
gesetzt. Die andere nicht. Über ein alias lösche ich die rules und lese die
gewünschte Datei ein.

Warum taucht in /var/log/messages dennoch kein Eintrag auf?

Gruss, Marco

P.S.: Die Anzeige sieht jetzt so aus:

target     prot opt     source                destination           ports
ACCEPT     tcp  ----l-  anywhere             linux.team.intra      any ->
any
ACCEPT     udp  ----l-  anywhere             linux.team.intra      any ->
any
ACCEPT     all  ----l-  localhost.team.intra localhost.team.intra  n/a
ACCEPT     icmp ----l-  anywhere             anywhere              any ->
any
ACCEPT     udp  ----l-  anywhere             anywhere              domain
->   any
ACCEPT     udp  ----l-  anywhere             anywhere              any ->
domain
ACCEPT     udp  ----l-  anywhere             anywhere              http ->
any
ACCEPT     udp  ----l-  anywhere             anywhere              any ->
http
ACCEPT     tcp  ----l-  anywhere             anywhere              http ->
any
ACCEPT     tcp  ----l-  anywhere             anywhere              any ->
http
ACCEPT     udp  ----l-  anywhere             anywhere
ftp-data:ssh ->   any
ACCEPT     udp  ----l-  anywhere             anywhere              any ->
ftp-data:ssh
ACCEPT     tcp  ----l-  anywhere             anywhere
ftp-data:ssh ->   any
ACCEPT     tcp  ----l-  anywhere             anywhere              any ->
ftp-data:ssh
ACCEPT     udp  ----l-  anywhere             anywhere              smtp ->
any
ACCEPT     udp  ----l-  anywhere             anywhere              any ->
smtp
ACCEPT     tcp  ----l-  anywhere             anywhere              smtp ->
any
ACCEPT     tcp  ----l-  anywhere             anywhere              any ->
smtp
ACCEPT     tcp  ----l-  anywhere             anywhere              pop3 ->
any
ACCEPT     tcp  ----l-  anywhere             anywhere              any ->
pop3
ACCEPT     udp  ----l-  anywhere             anywhere              pop3 ->
any
ACCEPT     udp  ----l-  anywhere             anywhere              any ->
pop3
ACCEPT     tcp  ----l-  anywhere             anywhere              imap2 ->
any
ACCEPT     tcp  ----l-  anywhere             anywhere              any ->
imap2
ACCEPT     udp  ----l-  anywhere             anywhere              imap2 ->
any
ACCEPT     udp  ----l-  anywhere             anywhere              any ->
imap2
ACCEPT     tcp  ----l-  anywhere             anywhere              https ->
any
ACCEPT     tcp  ----l-  anywhere             anywhere              any ->
https
ACCEPT     udp  ----l-  anywhere             anywhere              https ->
any
ACCEPT     udp  ----l-  anywhere             anywhere              any ->
https
ACCEPT     udp  ----l-  anywhere             anywhere              bootps
->   bootpc
ACCEPT     udp  ----l-  anywhere             anywhere              bootpc
->   bootps
ACCEPT     tcp  ----l-  anywhere             anywhere              bootps
->   bootpc
ACCEPT     tcp  ----l-  anywhere             anywhere              bootpc
->   bootps
ACCEPT     udp  ----l-  anywhere             anywhere
netbios-ns:netbios-ssn ->   netbios-ns:netbi
os-ssn
ACCEPT     udp  ----l-  anywhere             anywhere
netbios-ns:netbios-ssn ->   netbios-ns:netbi
os-ssn
ACCEPT     tcp  ----l-  anywhere             anywhere
netbios-ns:netbios-ssn ->   netbios-ns:netbi
os-ssn
ACCEPT     tcp  ----l-  anywhere             anywhere
netbios-ns:netbios-ssn ->   netbios-ns:netbi
os-ssn
ACCEPT     udp  ----l-  anywhere             anywhere              any ->
113
ACCEPT     tcp  ----l-  anywhere             anywhere              any ->
auth
ACCEPT     tcp  ----l-  anywhere             anywhere              nicname
->   any
ACCEPT     tcp  ----l-  anywhere             anywhere              any ->
nicname
ACCEPT     udp  ----l-  anywhere             anywhere              nicname
->   any
ACCEPT     udp  ----l-  anywhere             anywhere              any ->
nicname
Chain forward (policy DENY):
target     prot opt     source                destination           ports
MASQ       all  ----l-  localnet/24          anywhere              n/a
Chain output (policy DENY):
target     prot opt     source                destination           ports
ACCEPT     all  ----l-  anywhere             anywhere              n/a


-
Hinweise zur Benutzung dieser (und anderer Mailing-Listen) bitte beachten:
--> http://lug-owl.de/mailinglist_hints.html <--



More information about the Linux mailing list