View Single Post
  #1   (View Single Post)  
Old 18th June 2008
chamnanpol chamnanpol is offline
New User
 
Join Date: Jun 2008
Posts: 6
Default Why PFLOG can't LOG anything?????

FreeBSD 6.2 Server
- lnc0 for private network ip = 192.168.5.1, netmask 255.255.255.0, dns = 192.168.4.2
- lnc1 for internet ip = 192.168.4.4, netmask 255.255.255.0, dns =192.168.4.2
windows xp client
- Lan connet to lnc0 ---- ip = 192.168.5.21, netmask 255.255.255.0, default gateway = 192.168.5.1, dns = 192.168.4.2

Compile for Kernel
ident NAT_inet
options IPFIREWALL
options IPFIREWALL_FORWARD
options IPFIREWALL_DEFAULT_TO_ACCEPT
options IPFIREWALL_VERBOSE
options IPFIREWALL_VERBOSE_LIMIT=120
options IPDIVERT
device pf
device pflog
device pfsync
options ALTQ
options ALTQ_CBQ
options ALTQ_RED
options ALTQ_RIO
options ALTQ_HFSC
options ALTQ_PRIQ
options ALTQ_NOPCC

rc.conf file
defaultrouter="192.168.5.1"
gateway_enable="YES"
hostname="chalermpol.kmitl.ac.th"
ifconfig_lnc0="inet 192.168.5.1 netmask 255.255.255.0"
inetd_enable="YES"
keymap="us.iso"
linux_enable="YES"
sshd_enable="YES"
pf_enable="YES"
pf_rules="/etc/pf.conf"
pf_flags=""
pflog_enable="YES"
pflog_logfile="/var/log/pflog"
pflog_flags=""
natd_enable="YES"
natd_interface="lnc1"
natd_flags="-s -u -m"
ifconfig_lnc1="DHCP"
hostname="chalermpol.kmitl.ac.th"

-i don't set anything for /etc/pf.conf
-windows xp client can use internet
-when i type --- tcpdump -n -e -ttt -i lnc0 --- it's will show for packets in real time
-when i type --- tcpdump -n -e -ttt -r /var/log/pflog it's will show like this
---reading from file /var/log/pflog, link-type PFLOG (OpenBSD pflog file)----
-why pflog don't log anything?
-how can i set for pf.conf for pflog to log information like this command "tcpdump -n -e -ttt -i lnc0"?
-i don't understand when i read about pf.conf from this link http://www.freebsd.org/cgi/man.cgi?q...ts&format=html
-please help me and show example for me
pleasesssss T-T
Reply With Quote