Brian J. Murrell wrote: > On Thu, 2006-12-10 at 13:38 -0700, Tom Eastep wrote: >> I assume that you are seeing a log of messages in your log -- hence your >> request. > > Indeed. Windows boxes doing the SMB discovery thing. > >> Is the traffic mostly broadcasts? > > Yeah. > >> Or is there unicast traffic as well? > > Hrm. There would be for the misguided user, but I probably want to log > that. > >> I'm wondering if I just suppressed logging of broadcast/multicast if that >> would >> be enough. > > I wonder if that's "the right thing" to do though. I'd think letting > people define what traffic they don't want to log using the existing > macros even if they want, would not be better.
I'll await your patch then that allows using macros and actions in the Netfilter mangle table. You keep ignoring the fact that MAC filtration can occur in that table too. And remember that REJECT isn't even allowed in the mangle table so the existing Drop action (which rejects Auth) can't be directly used there even if Shorewall supported mangle actions. -Tom -- Tom Eastep \ Nothing is foolproof to a sufficiently talented fool Shoreline, \ http://shorewall.net Washington USA \ [EMAIL PROTECTED] PGP Public Key \ https://lists.shorewall.net/teastep.pgp.key
signature.asc
Description: OpenPGP digital signature
------------------------------------------------------------------------- Using Tomcat but need to do more? Need to support web services, security? Get stuff done quickly with pre-integrated technology to make your job easier Download IBM WebSphere Application Server v.1.0.1 based on Apache Geronimo http://sel.as-us.falkag.net/sel?cmd=lnk&kid=120709&bid=263057&dat=121642
_______________________________________________ Shorewall-users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/shorewall-users
