Brian Schang wrote:

> I've looked through the help files and examples, but they seem to apply 
> to ACCEPT rules, not DROP rules. Is there a way to extend log limiting 
> to DROP also?

/etc/shorewall/actions:

LogLimit

/etc/shorewall/action.LogLimit:

#TARGET         SOURCE  DEST    PROTO   DEST    SOURCE  RATE    USER/
#                                       PORT    PORT(S) LIMIT   GROUP
LOG:info        -       -       -       -       -       1/hour:1
DROP

/etc/shorewall/rules:

LogLimit        net     fw      udp     59695

> 
> Incidentally, a quick Google search didn't turn up anything obvious on 
> UDP port 59695. Does anyone have any idea what that is?

Nope.

> 
> Lastly, and most important, thanks for the great product! As a hobbyist, 
> I've learned quite a bit by tinkering with Shorewall.
> 

You're welcome.

-Tom
-- 
Tom Eastep        \ When I die, I want to go like my Grandfather who
Shoreline,         \ died peacefully in his sleep. Not screaming like
Washington, USA     \ all of the passengers in his car
http://shorewall.net \________________________________________________

Attachment: signature.asc
Description: OpenPGP digital signature

------------------------------------------------------------------------------
SOLARIS 10 is the OS for Data Centers - provides features such as DTrace,
Predictive Self Healing and Award Winning ZFS. Get Solaris 10 NOW
http://p.sf.net/sfu/solaris-dev2dev
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to