OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Subject: Re: Help requested: unable to see any logs from ipchains rules with-l (logging) option
From: Marco van Berkum (m.v.berkumOBIT.NL)
Date: Tue Dec 19 2000 - 08:37:48 CST


fire-eyes wrote:
>
> On my last install, ipchains rules that had -l (logging) turned on would
> show up in my /var/log/messages . I don't have the old syslog.conf file
> (if thats even the right place.)
>
> I put this line into /etc/syslog.conf at the advice of a friend
>
> kern.info /var/log/messages
>
> and yet its still not showing up, in either /var/log/messages or
> /var/log/syslog or /var/log/debug etc.
>
> Any hints would be appreciated, this gets extremely annoying during
> attacks when asked to prove I was attacked :(
>
> [eof]

*.=info;*.=notice /var/log/messages

might help you out

--
Q:  What kind of dog goes "BOFH!  BOFH!"?
A:  A rootweiler

Marco van Berkum, System Operator/Security Analyst OBIT b.v. RIPEHANDLE: MB17300-RIPE