https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=292118
Bug ID: 292118
Summary: Cannot log packets denied by fw_deny_unknown_exthdrs?
Product: Base System
Version: CURRENT
Hardware: Any
OS: Any
Status: New
Severity: Affects Only Me
Priority: ---
Component: kern
Assignee: [email protected]
Reporter: [email protected]
While the fw_deny_unknown_exthdrs sysctl is very helpful to stop unknonwn
nonsense from possible malicious intend, there seems to be no way to log these
packets, which makes the log entry only little useful as, e.g., no src/dst
addresses are available or other flags etc. from the packet header. It would
be nice if ipfwlog for example could get a copy of these packets for further
analysis.
--
You are receiving this mail because:
You are the assignee for the bug.