Computing.Net > Forums > Linux > firewall logs too much

Computer Problems? Computing.Net has over 1,000,000 posts about all things technology related! Over 90% answered within 24 hours! Click here to start participating now! Also, be sure to check out the New User Guide.

firewall logs too much

Reply to Message Icon

Name: Johanovitch
Date: September 18, 2003 at 11:33:40 Pacific
OS: SuSE 8.0
CPU/Ram: 366MHz/112MB
Comment:

Hi, I have set up a linux-computer as a router, and I am using the iptables-rules that are given in http://www.tldp.org/HOWTO/IP-Masquerade-HOWTO/firewall-examples.html

I want to change to the stronger firewall-ruleset ( http://www.tldp.org/HOWTO/IP-Masquerade-HOWTO/stronger-firewall-examples.html ), but due to some sort of network-traffic, it is logging things almost every second, which causes to log-file to grow way too fast. and as I don't have that much disk-space on that computer, this could cause problems.

can anybody tell me which rules I should change?
most of the logged traffic looks like this:

Sep 18 20:01:05 p311 kernel: IN=eth0 OUT= MAC=ff:ff:ff:ff:ff:ff:00:07:95:58:88:c9:08:00 SRC=134.184.120.131 DST=134.184.120.255 LEN=78 TOS=0x00 PREC=0x00 TTL=128 ID=47832 PROTO=UDP SPT=137 DPT=137 LEN=58

the source changes between IP-s on the campus-network, so I guess that's just some computers doing something which isn't that correct (windows?)

I saw in the firewall ruleset the words "drop-it-and-log-it"
I guess I should change this. Should I replace it by DROP, or doesn't that work?

any ideas?

Johan



Sponsored Link
Ads by Google
Reply to Message Icon

Related Posts

See More







Post Locked

This post is quite old and has been locked from receiving new replies. Please create a new posting instead.


Go to Linux Forum Home


Sponsored links

Ads by Google


Results for: firewall logs too much

Samba takes too much resource www.computing.net/answers/linux/samba-takes-too-much-resource/23012.html

Firewall help please!! www.computing.net/answers/linux/firewall-help-please/25852.html

network problems www.computing.net/answers/linux/network-problems/20560.html