Am 24.06.2012 14:15, schrieb Michael Schwendt:
> On Sun, 24 Jun 2012 14:03:08 +0200, Reindl Harald wrote:
>
>> what is this in dmesg?
>> why is "--log-prefix" here loggd instead the --log-prefix from whatever rule it was?
>>
>> --log-prefixIN=eth1 OUT= MAC=00:50:8d:b5:cc:de:00:01:5c:24:68:01:08:00 SRC=120.89.73.74 DST=84.113.45.179 LEN=60
>> TOS=0x00 PREC=0x00 TTL=51 ID=58168 DF PROTO=TCP SPT=39903 DPT=19 WINDOW=5840 RES=0x00 SYN URGP=0
>>
>> is this more likely a kernel-bug or rsyslog?
>
> What does "iptables-save|grep log-prefix" tell?
> And is it reproducible after "iptables-save|iptables-restore"?
this VERY strange!
_____________________________
after a reboot without calling my firewall-script builing all iptables-rules
from scratch with iptables-commands
so i have not really a idea what is happening and at which point
it gets damaged - but since we are speaking about the firewall
i am a little bit nervous
--
users mailing list
users@lists.fedoraproject.org
To unsubscribe or change subscription options:
https://admin.fedoraproject.org/mailman/listinfo/users
Guidelines: http://fedoraproject.org/wiki/Mailing_list_guidelines
Have a question? Ask away: http://ask.fedoraproject.org
06-30-2012, 06:37 PM
Reindl Harald
F17: iptables logging "--log-prefix" in dmesg?
Am 24.06.2012 14:15, schrieb Michael Schwendt:
> On Sun, 24 Jun 2012 14:03:08 +0200, Reindl Harald wrote:
>
>> what is this in dmesg?
>> why is "--log-prefix" here loggd instead the --log-prefix from whatever rule it was?
>>
>> --log-prefixIN=eth1 OUT= MAC=00:50:8d:b5:cc:de:00:01:5c:24:68:01:08:00 SRC=120.89.73.74 DST=84.113.45.179 LEN=60
>> TOS=0x00 PREC=0x00 TTL=51 ID=58168 DF PROTO=TCP SPT=39903 DPT=19 WINDOW=5840 RES=0x00 SYN URGP=0
>>
>> is this more likely a kernel-bug or rsyslog?
>
> What does "iptables-save|grep log-prefix" tell?
> And is it reproducible after "iptables-save|iptables-restore"?
since this happens all time after reboot on different machines with rules
like this: https://bugzilla.redhat.com/show_bug.cgi?id=836738
--
users mailing list
users@lists.fedoraproject.org
To unsubscribe or change subscription options:
https://admin.fedoraproject.org/mailman/listinfo/users
Guidelines: http://fedoraproject.org/wiki/Mailing_list_guidelines
Have a question? Ask away: http://ask.fedoraproject.org
07-02-2012, 01:42 AM
Bill Davidsen
F17: iptables logging "--log-prefix" in dmesg?
Reindl Harald wrote:
what is this in dmesg?
why is "--log-prefix" here loggd instead the --log-prefix from whatever rule it was?
Don't see it here unless I make a mistake and type "--log-prefix" twice on the
command line.
--
Bill Davidsen <davidsen@tmr.com>
"We have more to fear from the bungling of the incompetent than from
the machinations of the wicked." - from Slashdot
--
users mailing list
users@lists.fedoraproject.org
To unsubscribe or change subscription options:
https://admin.fedoraproject.org/mailman/listinfo/users
Guidelines: http://fedoraproject.org/wiki/Mailing_list_guidelines
Have a question? Ask away: http://ask.fedoraproject.org
07-02-2012, 08:15 AM
Michael Schwendt
F17: iptables logging "--log-prefix" in dmesg?
On Sun, 01 Jul 2012 21:42:28 -0400, Bill Davidsen wrote:
> Reindl Harald wrote:
> > what is this in dmesg?
> > why is "--log-prefix" here loggd instead the --log-prefix from whatever rule it was?
> >
> > --log-prefixIN=eth1 OUT= MAC=00:50:8d:b5:cc:de:00:01:5c:24:68:01:08:00 SRC=120.89.73.74 DST=84.113.45.179 LEN=60
> > TOS=0x00 PREC=0x00 TTL=51 ID=58168 DF PROTO=TCP SPT=39903 DPT=19 WINDOW=5840 RES=0x00 SYN URGP=0
> >
> > is this more likely a kernel-bug or rsyslog?
> >
> Don't see it here unless I make a mistake and type "--log-prefix" twice on the
> command line.
It's real -> https://bugzilla.redhat.com/825796
and apparently not limited to --log-prefix.
--
Fedora release 17 (Beefy Miracle) - Linux 3.4.4-3.fc17.x86_64
loadavg: 0.67 0.42 0.22
--
users mailing list
users@lists.fedoraproject.org
To unsubscribe or change subscription options:
https://admin.fedoraproject.org/mailman/listinfo/users
Guidelines: http://fedoraproject.org/wiki/Mailing_list_guidelines
Have a question? Ask away: http://ask.fedoraproject.org
07-02-2012, 05:48 PM
Bill Davidsen
F17: iptables logging "--log-prefix" in dmesg?
Michael Schwendt wrote:
On Sun, 01 Jul 2012 21:42:28 -0400, Bill Davidsen wrote:
Reindl Harald wrote:
what is this in dmesg?
why is "--log-prefix" here loggd instead the --log-prefix from whatever rule it was?
Don't see it here unless I make a mistake and type "--log-prefix" twice on the
command line.
It's real -> https://bugzilla.redhat.com/825796
and apparently not limited to --log-prefix.
It is, and I know why I haven't seen it, it's in restore, so my attempt to make
a change and view with iptables, or save, didn't show it.
Thanks for the pointer.
--
Bill Davidsen <davidsen@tmr.com>
"We have more to fear from the bungling of the incompetent than from
the machinations of the wicked." - from Slashdot
--
users mailing list
users@lists.fedoraproject.org
To unsubscribe or change subscription options:
https://admin.fedoraproject.org/mailman/listinfo/users
Guidelines: http://fedoraproject.org/wiki/Mailing_list_guidelines
Have a question? Ask away: http://ask.fedoraproject.org