Solved

SuSE firewall and syslog.conf

Posted on 2004-09-03
5
635 Views
Last Modified: 2013-12-15
my firewall seems to be filling up all sorts of log files that i don't want it in.  okay, so that's a bit of hyperbole, but the firewall messages are showing up in /var/log/messages, /var/log/warn and /var/log/firewall.  (i don't know if it makes any difference, but it's SuSE 8.0 running kernel 2.4.18.)

i'd like to drop the loggin to messages and warn and leave everything in firewall, but i'm not sure what to do with my syslog.conf file.  below are the lines from syslog.conf that mention the three files in question:
*.=warn;*.=err                  -/var/log/warn
*.crit                           /var/log/warn
*.*;mail.none;news.none;authpriv.none;auth.none         -/var/log/messages
kern.*          -/var/log/firewall

i'm not worried about errant kernel messages appearing in the firewall file - they only account for about 1.5% of the messages.  i've found websites saying that the firewall logs to kern.=info and kern.=debug.  what about boot messages (the other 1.5% of the firewall file) - what log level do they get passed through?

thanks!
kevin
0
Comment
Question by:kevincasey
  • 2
5 Comments
 
LVL 2

Author Comment

by:kevincasey
ID: 12105701
any suggestions?  anyone?
0
 

Expert Comment

by:azcoffeehabit
ID: 12148332
Hi,

   If you are running a gui based firewall configuration program look for the logging directive for the individual firewall rules that you do not want to see and disable the logging.  

PKG
0
 
LVL 2

Author Comment

by:kevincasey
ID: 12162320
i'm not using a gui based tool.  i'm doing this by hand.

i ended up hacking this one together myself.  since i couldn't figure out what level the firewall was logging at, i ended up dumping all the kernel messages into the firewall log.  the two lines i ended up editing are below:

*.*;kern,mail,news,authpriv,auth.none           -/var/log/messages
kern.*          -/var/log/firewall
0
 
LVL 1

Accepted Solution

by:
DarthMod earned 0 total points
ID: 15749341
PAQed with points (300) refunded

DarthMod
Community Support Moderator
0

Featured Post

Is Your Active Directory as Secure as You Think?

More than 75% of all records are compromised because of the loss or theft of a privileged credential. Experts have been exploring Active Directory infrastructure to identify key threats and establish best practices for keeping data safe. Attend this month’s webinar to learn more.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

I am a long time windows user and for me it is normal to have spaces in directory and file names. Changing to Linux I found myself frustrated when I moved my windows data over to my new Linux computer. The problem occurs when at the command line.…
Using 'screen' for session sharing, The Simple Edition Step 1: user starts session with command: screen Step 2: other user (logged in with same user account) connects with command: screen -x Done. Both users are connected to the same CLI sessio…
Connecting to an Amazon Linux EC2 Instance from Windows Using PuTTY.
This demo shows you how to set up the containerized NetScaler CPX with NetScaler Management and Analytics System in a non-routable Mesos/Marathon environment for use with Micro-Services applications.

863 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

19 Experts available now in Live!

Get 1:1 Help Now