Logging with Iptables does not work
Hello!
I'm trying to set up a firewall that logs all dropped packets, but I can't get it working. For troubleshooting I installed a fresh ubuntu-9.04-i386-minimal image from my hoster and edited the syslog.conf, so that it logs everything into one logfile: Code:
*.* /var/log/everything.log Code:
iptables -A INPUT -j LOG Code:
Sep 16 12:19:27 vs24029 syslogd 1.5.0#5ubuntu3: restart. Code:
Chain INPUT (policy ACCEPT 888 packets, 540K bytes) Code:
[3542423.358689] IN=venet0 OUT= Psystorm |
Quote:
Code:
then in the syslog.conf Code:
# Send iptables LOGDROPs to /var/log/iptables catch kernel debug messages. |
Okay I now tried to set up my iptables and sysklogd as yours:
Code:
iptables -F Code:
kern.=debug /var/log/iptables |
Quote:
did you restart syslog and iptables? |
I restarted sysklogd and reseted iptables with
Code:
iptables -F |
Quote:
ok, but packet counter is still increasing for the log_drop rule??? any logs collected in dmesg? |
The packet counter is increasing and dmesg now gives the following:
Code:
[3544900.127112] BUG: recent printk recursion! Code:
Sep 16 13:45:35 vs24029 kernel: Cannot find map file. |
I finally found the problem, it is a bug in OpenVZ: http://bugzilla.openvz.org/show_bug.cgi?id=1284.
Thanks for your help! |
Quote:
|
All times are GMT -5. The time now is 09:16 AM. |