On 7/10/2014 8:21 AM, Mallory, Danny wrote:
> Hello
> I just upgraded from Debian 6(squeeze) to Debian 7(Wheezy) and my
logging does not seem to be working anymore. "shorewall show log" looks
normal pointing to /var/log/messages but I get no logging of drops or
rejects anymore. It appears to be doing kernel level logging as the
messages are showing up via dmesg but not in any real log file. Is this
a known issue?

No.

> 
> Here are a couple of telnet test and output showing up in dmesg. 
> 
> [ 2624.917558] Shorewall:net2fw:DROP:IN=eth0 OUT= 
> MAC=00:50:56:ab:29:5a:a4:4c:11:e5:6b:00:08:00 SRC=10.132.230.254 
> DST=10.132.194.109 LEN=60 TOS=0x00 PREC=0x00 TTL=62 ID=11800 DF PROTO=TCP 
> SPT=54655 DPT=23 WINDOW=5840 RES=0x00 SYN URGP=0 
> [ 2625.919632] Shorewall:net2fw:DROP:IN=eth0 OUT= 
> MAC=00:50:56:ab:29:5a:a4:4c:11:e5:6b:00:08:00 SRC=10.132.230.254 
> DST=10.132.194.109 LEN=60 TOS=0x00 PREC=0x00 TTL=62 ID=28097 DF PROTO=TCP 
> SPT=54656 DPT=23 WINDOW=5840 RES=0x00 SYN URGP=0 
> 
> 
> nothing in /var/log/messages (or any other log file) 
> 

Look at your rsyslog configuration -- if the messages are showing up in
dmesg, then is certainly isn't a Shorewall issue.

-Tom
-- 
Tom Eastep        \ When I die, I want to go like my Grandfather who
Shoreline,         \ died peacefully in his sleep. Not screaming like
Washington, USA     \ all of the passengers in his car
http://shorewall.net \________________________________________________

Attachment: signature.asc
Description: OpenPGP digital signature

------------------------------------------------------------------------------
Open source business process management suite built on Java and Eclipse
Turn processes into business applications with Bonita BPM Community Edition
Quickly connect people, data, and systems into organized workflows
Winner of BOSSIE, CODIE, OW2 and Gartner awards
http://p.sf.net/sfu/Bonitasoft
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to