Brian J. Murrell wrote:
> On Thu, 2006-12-10 at 13:38 -0700, Tom Eastep wrote:
>> I assume that you are seeing a log of messages in your log -- hence your
>> request.
> 
> Indeed.  Windows boxes doing the SMB discovery thing.
> 
>> Is the traffic mostly broadcasts?
> 
> Yeah.
> 
>> Or is there unicast traffic as well?
> 
> Hrm.  There would be for the misguided user, but I probably want to log
> that.
> 
>> I'm wondering if I just suppressed logging of broadcast/multicast if that 
>> would
>> be enough.
> 
> I wonder if that's "the right thing" to do though.  I'd think letting
> people define what traffic they don't want to log using the existing
> macros even if they want, would not be better.

I'll await your patch then that allows using macros and actions in the Netfilter
mangle table. You keep ignoring the fact that MAC filtration can occur in that
table too.

And remember that REJECT isn't even allowed in the mangle table so the existing
Drop action (which rejects Auth) can't be directly used there even if Shorewall
supported mangle actions.

-Tom
-- 
Tom Eastep    \ Nothing is foolproof to a sufficiently talented fool
Shoreline,     \ http://shorewall.net
Washington USA  \ [EMAIL PROTECTED]
PGP Public Key   \ https://lists.shorewall.net/teastep.pgp.key

Attachment: signature.asc
Description: OpenPGP digital signature

-------------------------------------------------------------------------
Using Tomcat but need to do more? Need to support web services, security?
Get stuff done quickly with pre-integrated technology to make your job easier
Download IBM WebSphere Application Server v.1.0.1 based on Apache Geronimo
http://sel.as-us.falkag.net/sel?cmd=lnk&kid=120709&bid=263057&dat=121642
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to