[Gllug] netfilter logging

Alain Williams addw at phcomp.co.uk
Fri Sep 16 21:38:38 UTC 2005


On Fri, Sep 16, 2005 at 07:18:32PM +0100, Tethys wrote:
> 
> Doug Winter writes:
> 
> >the user log feature is what you want.  it's still horrible though.  see 
> >ulogd.
> 
> Yep, that seems to work. I can't get the SYSLOG output module to work,
> but just giving a filename to LOGEMU works well enough (for now at least).
> 
> >> (The more I'm forced to use the horror that is iptables, the more
> >> incentive I have to finish my rattables[1] project).
> >
> >I just want pf for linux :(
> 
> ...which is basically what rattables will be -- pf syntax converted to
> iptable rules. Although I may skip netfilter altogether, and go with
> Jamal's tc filtering/u32 stuff instead, which looks promising, and has
> even more need of a decent user interface than does iptables.

Yes: that is nice - and much faster than the sequential matching that iptables
does.

The syslog stuff is based on a 25 year old Unix model ... things have now moved on,
it needs to be redone completely.

-- 
Alain Williams
Parliament Hill Computers Ltd.
Linux Consultant - Mail systems, Web sites, Networking, Programmer, IT Lecturer.
+44 (0) 787 668 0256  http://www.phcomp.co.uk/

#include <std_disclaimer.h>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 196 bytes
Desc: not available
URL: <http://mailman.lug.org.uk/pipermail/gllug/attachments/20050916/cd45f2b5/attachment.pgp>
-------------- next part --------------
-- 
Gllug mailing list  -  Gllug at gllug.org.uk
http://lists.gllug.org.uk/mailman/listinfo/gllug


More information about the GLLUG mailing list