Re: [FreeBSD] PF log

2005-09-09 Başlik KEMAL FIRAT



Sorunum galiba buymus.
komutu yanlis parametre ile 
kullanmisim...

wall# tcpdump -i pflog0tcpdump: WARNING: 
pflog0: no IPv4 address assignedtcpdump: verbose output suppressed, use -v 
or -vv for full protocol decodelistening on pflog0, link-type PFLOG (OpenBSD 
pflog file), capture size 96 byte


  - Original Message - 
  From: 
  KEMAL 
  FIRAT 
  To: freebsd@lists.enderunix.org 
  
  Sent: 09 Eylül 2005 Cuma 16:19
  Subject: [FreeBSD] PF log
  
  
  Loglara bakmak istedigimde asagidaki mesaji 
  aliyorum.Nasil bir konfigurasyon yapmam lazim.
  
  wall# tcpdump -i /var/log/pflogtcpdump: 
  BIOCSETIF: /var/log/pflog: Device not configured
  
  wall# ps ax|grep pf 325 ?? 
  Is 0:00.01 pflogd: [priv] (pflogd) 328 
  ?? S 0:01.50 pflogd: [running] -s 116 -f 
  /var/log/pflog (pflogd)
  
  Kolay 
Gelsin...


RE: [FreeBSD] PF log

2005-09-09 Başlik Metin Pasaoglu









Merhaba Kemal Bey,



Acaba her hangi bir PF satirinda log tutulmasi
icin log komutunu eklediniz mi? /var/log/pflog dosyasi sistemde mevcut
mudur?



İyi çalışmalar,






 
  
  
  Metin Paşaoğlu
  
  
 
 
  
  Security Expert
  Bilçağ A.Ş.
  Tel : +90
  216 4654950
  Fax : +90 216 4654865
  www.bilcag.net
  
 














From: KEMAL FIRAT
[mailto:[EMAIL PROTECTED] 
Sent: Friday, September 09, 2005
4:19 PM
To: freebsd@lists.enderunix.org
Subject: [FreeBSD] PF log













Loglara bakmak istedigimde asagidaki mesaji aliyorum.Nasil
bir konfigurasyon yapmam lazim.











wall# tcpdump -i /var/log/pflog
tcpdump: BIOCSETIF: /var/log/pflog: Device not configured











wall# ps ax|grep pf
 325 ?? Is 0:00.01 pflogd: [priv]
(pflogd)
 328 ?? S 0:01.50 pflogd:
[running] -s 116 -f /var/log/pflog (pflogd)











Kolay Gelsin...










Re: [FreeBSD] PF log

2005-09-09 Başlik Huzeyfe Onal
ek olarak http://ipucu.enderunix.org/view.php?id=570lang=tr
adresindeki ipucunu inceleyebilirsiniz.

09.09.2005 tarihinde KEMAL FIRAT [EMAIL PROTECTED] yazmış:
  
 Sorunum galiba buymus. 
 komutu yanlis parametre ile kullanmisim... 
   
 wall# tcpdump -i pflog0
 tcpdump: WARNING: pflog0: no IPv4 address assigned
 tcpdump: verbose output suppressed, use -v or -vv for full protocol decode
 listening on pflog0, link-type PFLOG (OpenBSD pflog file), capture size 96
 byte
  
   
  
 - Original Message - 
 From: KEMAL FIRAT 
 To: freebsd@lists.enderunix.org 
 Sent: 09 Eylül 2005 Cuma 16:19 
 Subject: [FreeBSD] PF log 
 
  
   
 Loglara bakmak istedigimde asagidaki mesaji aliyorum.Nasil bir konfigurasyon
 yapmam lazim. 
   
 wall# tcpdump -i /var/log/pflog
 tcpdump: BIOCSETIF: /var/log/pflog: Device not configured 
   
 wall# ps ax|grep pf
   325  ??  Is 0:00.01 pflogd: [priv] (pflogd)
   328  ??  S  0:01.50 pflogd: [running] -s 116 -f /var/log/pflog
 (pflogd) 
   
 Kolay Gelsin... 


-- 
Huzeyfe ÖNAL  
---
First Turkish Qmail book is out! Go check it.
Duydunuz mu! Turkiye'nin ilk Qmail kitabi cikti.
http://www.acikakademi.com/catalog/qmail/


Re: [FreeBSD] PF log

2005-09-09 Başlik KEMAL FIRAT
Tesekkur ederim Hasan Bey zaten girdiginiz ipucunu referans almistim.Sorun 
tamamen benim dikkatsizligimden kaynaklaniyormus.


Metin bey pflog dosyam mevcut;

wall# tcpdump -r /var/log/pflog
reading from file /var/log/pflog, link-type PFLOG (OpenBSD pflog file)
13:34:55.808866 IP ptr-052.227.203.193.arpa.as1901.net.23293  
wall.firewall.com.51713: R 505344145:505344145(0) ack 1654366992 win 0
15:30:59.394656 IP echo-v2.msgr.hotmail.com.afs3-callback  
wall.firewall.com.55622:  [|rx] (20)
15:31:00.821435 IP echo-v2.msgr.hotmail.com.afs3-callback  
wall.firewall.com.55622:  [|rx] (20)
15:31:01.203043 IP echo-v2.msgr.hotmail.com.afs3-callback  
wall.firewall.com.55622:  [|rx] (20)
15:31:02.151370 IP echo-v2.msgr.hotmail.com.afs3-callback  
wall.firewall.com.55622:  [|rx] (20)
15:31:03.675015 IP echo-v2.msgr.hotmail.com.afs3-callback  
wall.firewall.com.55622:  [|rx] (20)
15:31:09.625727 IP echo-v2.msgr.hotmail.com.afs3-callback  
wall.firewall.com.50690:  [|rx] (20)
15:31:29.533436 IP echo-v2.msgr.hotmail.com.afs3-callback  
wall.firewall.com.55599:  [|rx] (20)


Tesekkur ederim...


- Original Message - 
From: Huzeyfe Onal [EMAIL PROTECTED]

To: freebsd@lists.enderunix.org
Sent: 09 Eylül 2005 Cuma 16:37
Subject: Re: [FreeBSD] PF log



ek olarak http://ipucu.enderunix.org/view.php?id=570lang=tr
adresindeki ipucunu inceleyebilirsiniz.

09.09.2005 tarihinde KEMAL FIRAT [EMAIL PROTECTED] yazmış:


Sorunum galiba buymus.
komutu yanlis parametre ile kullanmisim...

wall# tcpdump -i pflog0
tcpdump: WARNING: pflog0: no IPv4 address assigned
tcpdump: verbose output suppressed, use -v or -vv for full protocol 
decode
listening on pflog0, link-type PFLOG (OpenBSD pflog file), capture size 
96

byte



- Original Message - 
From: KEMAL FIRAT

To: freebsd@lists.enderunix.org
Sent: 09 Eylül 2005 Cuma 16:19
Subject: [FreeBSD] PF log



Loglara bakmak istedigimde asagidaki mesaji aliyorum.Nasil bir 
konfigurasyon

yapmam lazim.

wall# tcpdump -i /var/log/pflog
tcpdump: BIOCSETIF: /var/log/pflog: Device not configured

wall# ps ax|grep pf
  325  ??  Is 0:00.01 pflogd: [priv] (pflogd)
  328  ??  S  0:01.50 pflogd: [running] -s 116 -f /var/log/pflog
(pflogd)

Kolay Gelsin...



--
Huzeyfe ÖNAL
---
First Turkish Qmail book is out! Go check it.
Duydunuz mu! Turkiye'nin ilk Qmail kitabi cikti.
http://www.acikakademi.com/catalog/qmail/




-
Cikmak icin, e-mail: [EMAIL PROTECTED]
Liste arsivi: http://lists.enderunix.org
Turkiye'nin ilk FreeBSD kitabi: http://www.acikakademi.com/freebsd.php




Re: [FreeBSD] PF log

2005-09-09 Başlik KEMAL FIRAT

Dikkatsizlik had safhada beni buhale pf getirdi :-)
Huzeyfe Bey Kusuruma bakmayin size Hasan Bey olarak tesekkur etmisim.Bu 
vesile ile tum ipucu girenlere tesekkur etmis olayim :-)


Galiba bilgisayarimi kapatip biraz kafa dinlemem lazim

- Original Message - 
From: KEMAL FIRAT [EMAIL PROTECTED]

To: freebsd@lists.enderunix.org
Sent: 09 Eylül 2005 Cuma 16:48
Subject: Re: [FreeBSD] PF log


Tesekkur ederim Hasan Bey zaten girdiginiz ipucunu referans almistim.Sorun 
tamamen benim dikkatsizligimden kaynaklaniyormus.


Metin bey pflog dosyam mevcut;

wall# tcpdump -r /var/log/pflog
reading from file /var/log/pflog, link-type PFLOG (OpenBSD pflog file)
13:34:55.808866 IP ptr-052.227.203.193.arpa.as1901.net.23293  
wall.firewall.com.51713: R 505344145:505344145(0) ack 1654366992 win 0
15:30:59.394656 IP echo-v2.msgr.hotmail.com.afs3-callback  
wall.firewall.com.55622:  [|rx] (20)
15:31:00.821435 IP echo-v2.msgr.hotmail.com.afs3-callback  
wall.firewall.com.55622:  [|rx] (20)
15:31:01.203043 IP echo-v2.msgr.hotmail.com.afs3-callback  
wall.firewall.com.55622:  [|rx] (20)
15:31:02.151370 IP echo-v2.msgr.hotmail.com.afs3-callback  
wall.firewall.com.55622:  [|rx] (20)
15:31:03.675015 IP echo-v2.msgr.hotmail.com.afs3-callback  
wall.firewall.com.55622:  [|rx] (20)
15:31:09.625727 IP echo-v2.msgr.hotmail.com.afs3-callback  
wall.firewall.com.50690:  [|rx] (20)
15:31:29.533436 IP echo-v2.msgr.hotmail.com.afs3-callback  
wall.firewall.com.55599:  [|rx] (20)


Tesekkur ederim...


- Original Message - 
From: Huzeyfe Onal [EMAIL PROTECTED]

To: freebsd@lists.enderunix.org
Sent: 09 Eylül 2005 Cuma 16:37
Subject: Re: [FreeBSD] PF log



ek olarak http://ipucu.enderunix.org/view.php?id=570lang=tr
adresindeki ipucunu inceleyebilirsiniz.

09.09.2005 tarihinde KEMAL FIRAT [EMAIL PROTECTED] yazmış:


Sorunum galiba buymus.
komutu yanlis parametre ile kullanmisim...

wall# tcpdump -i pflog0
tcpdump: WARNING: pflog0: no IPv4 address assigned
tcpdump: verbose output suppressed, use -v or -vv for full protocol 
decode
listening on pflog0, link-type PFLOG (OpenBSD pflog file), capture size 
96

byte



- Original Message - 
From: KEMAL FIRAT

To: freebsd@lists.enderunix.org
Sent: 09 Eylül 2005 Cuma 16:19
Subject: [FreeBSD] PF log



Loglara bakmak istedigimde asagidaki mesaji aliyorum.Nasil bir 
konfigurasyon

yapmam lazim.

wall# tcpdump -i /var/log/pflog
tcpdump: BIOCSETIF: /var/log/pflog: Device not configured

wall# ps ax|grep pf
  325  ??  Is 0:00.01 pflogd: [priv] (pflogd)
  328  ??  S  0:01.50 pflogd: [running] -s 116 -f /var/log/pflog
(pflogd)

Kolay Gelsin...



--
Huzeyfe ÖNAL
---
First Turkish Qmail book is out! Go check it.
Duydunuz mu! Turkiye'nin ilk Qmail kitabi cikti.
http://www.acikakademi.com/catalog/qmail/




-
Cikmak icin, e-mail: [EMAIL PROTECTED]
Liste arsivi: http://lists.enderunix.org
Turkiye'nin ilk FreeBSD kitabi: http://www.acikakademi.com/freebsd.php





-
Cikmak icin, e-mail: [EMAIL PROTECTED]
Liste arsivi: http://lists.enderunix.org
Turkiye'nin ilk FreeBSD kitabi: http://www.acikakademi.com/freebsd.php




Re: [FreeBSD] PF log

2005-09-09 Başlik Huzeyfe Onal
merhaba,
simdi PF kullanmak isteyen arkadaslari urkutmus olacaksiniz:). PF bu
kadar basagrisi yapmaz..

09.09.2005 tarihinde KEMAL FIRAT [EMAIL PROTECTED] yazmış:
 Dikkatsizlik had safhada beni buhale pf getirdi :-)
 Huzeyfe Bey Kusuruma bakmayin size Hasan Bey olarak tesekkur etmisim.Bu
 vesile ile tum ipucu girenlere tesekkur etmis olayim :-)
 
 Galiba bilgisayarimi kapatip biraz kafa dinlemem lazim
 
 - Original Message -
 From: KEMAL FIRAT [EMAIL PROTECTED]
 To: freebsd@lists.enderunix.org
 Sent: 09 Eylül 2005 Cuma 16:48
 Subject: Re: [FreeBSD] PF log
 
 
  Tesekkur ederim Hasan Bey zaten girdiginiz ipucunu referans almistim.Sorun
  tamamen benim dikkatsizligimden kaynaklaniyormus.
 
  Metin bey pflog dosyam mevcut;
 
  wall# tcpdump -r /var/log/pflog
  reading from file /var/log/pflog, link-type PFLOG (OpenBSD pflog file)
  13:34:55.808866 IP ptr-052.227.203.193.arpa.as1901.net.23293 
  wall.firewall.com.51713: R 505344145:505344145(0) ack 1654366992 win 0
  15:30:59.394656 IP echo-v2.msgr.hotmail.com.afs3-callback 
  wall.firewall.com.55622:  [|rx] (20)
  15:31:00.821435 IP echo-v2.msgr.hotmail.com.afs3-callback 
  wall.firewall.com.55622:  [|rx] (20)
  15:31:01.203043 IP echo-v2.msgr.hotmail.com.afs3-callback 
  wall.firewall.com.55622:  [|rx] (20)
  15:31:02.151370 IP echo-v2.msgr.hotmail.com.afs3-callback 
  wall.firewall.com.55622:  [|rx] (20)
  15:31:03.675015 IP echo-v2.msgr.hotmail.com.afs3-callback 
  wall.firewall.com.55622:  [|rx] (20)
  15:31:09.625727 IP echo-v2.msgr.hotmail.com.afs3-callback 
  wall.firewall.com.50690:  [|rx] (20)
  15:31:29.533436 IP echo-v2.msgr.hotmail.com.afs3-callback 
  wall.firewall.com.55599:  [|rx] (20)
 
  Tesekkur ederim...
 
 
  - Original Message -
  From: Huzeyfe Onal [EMAIL PROTECTED]
  To: freebsd@lists.enderunix.org
  Sent: 09 Eylül 2005 Cuma 16:37
  Subject: Re: [FreeBSD] PF log
 
 
  ek olarak http://ipucu.enderunix.org/view.php?id=570lang=tr
  adresindeki ipucunu inceleyebilirsiniz.
 
  09.09.2005 tarihinde KEMAL FIRAT [EMAIL PROTECTED] yazmış:
 
  Sorunum galiba buymus.
  komutu yanlis parametre ile kullanmisim...
 
  wall# tcpdump -i pflog0
  tcpdump: WARNING: pflog0: no IPv4 address assigned
  tcpdump: verbose output suppressed, use -v or -vv for full protocol
  decode
  listening on pflog0, link-type PFLOG (OpenBSD pflog file), capture size
  96
  byte
 
 
 
  - Original Message -
  From: KEMAL FIRAT
  To: freebsd@lists.enderunix.org
  Sent: 09 Eylül 2005 Cuma 16:19
  Subject: [FreeBSD] PF log
 
 
 
  Loglara bakmak istedigimde asagidaki mesaji aliyorum.Nasil bir
  konfigurasyon
  yapmam lazim.
 
  wall# tcpdump -i /var/log/pflog
  tcpdump: BIOCSETIF: /var/log/pflog: Device not configured
 
  wall# ps ax|grep pf
325  ??  Is 0:00.01 pflogd: [priv] (pflogd)
328  ??  S  0:01.50 pflogd: [running] -s 116 -f /var/log/pflog
  (pflogd)
 
  Kolay Gelsin...
 
 
  --
  Huzeyfe ÖNAL
  ---
  First Turkish Qmail book is out! Go check it.
  Duydunuz mu! Turkiye'nin ilk Qmail kitabi cikti.
  http://www.acikakademi.com/catalog/qmail/
 
 
 
  -
  Cikmak icin, e-mail: [EMAIL PROTECTED]
  Liste arsivi: http://lists.enderunix.org
  Turkiye'nin ilk FreeBSD kitabi: http://www.acikakademi.com/freebsd.php
 
 
 
 
 -
 Cikmak icin, e-mail: [EMAIL PROTECTED]
 Liste arsivi: http://lists.enderunix.org
 Turkiye'nin ilk FreeBSD kitabi: http://www.acikakademi.com/freebsd.php
 
 
 


-- 
Huzeyfe ÖNAL  
---
First Turkish Qmail book is out! Go check it.
Duydunuz mu! Turkiye'nin ilk Qmail kitabi cikti.
http://www.acikakademi.com/catalog/qmail/