
Firewall Logs
The Firewall item allows you to take a look at your
system's packet filtering logs.
All firewall chain reports will be found in this section.
Reports can be generated according to different
criteria:
- Everything and name resolution: Shows all details about the
packets, namely: packet number, start, interval, protocol, source IP,
host name and port, destination IP, host name and port and packet
options.
- Destination IP: Shows only the following details about the
packets: packet number, start, interval and destination IP.
- Source IP: Shows only the following details about the packets:
packet number, start, interval and source IP.
- Source and destination IP: Shows only the following details
about the packets: packet number, start, interval, source IP and
destination IP.
- With destination port: Shows only the following details about
the packets: packet number, start, interval, source IP, destination IP
and port.
- With source port: Shows only the following details about the
packets: packet number, start, interval, source IP and port and
destination IP.
- With source and destination port: shows only the following
details about the packets: packet number, start, interval, source IP
and port and destination IP and port.
- With TCP options: Shows the same details as the "Everything and
name resolution" criteria, except the source and destination host
names.
Clicking on
at the left of each of the
above items will show the corresponding Firewall Logs Summary window,
for example:
Generated Mon Apr 15 11:16:09 ART 2002 by root.
5 of 456 items in the file "/var/log/messages" are packet logs, one has unique characteristics.
First packet log entry: Apr 15 10:53:26; last: Apr 15 10:53:26.
All entries where logged by the same host: "e500".
All entries are from the same chain: "Shorewall:fw2all:REJECT:".
All entries have the same target: "-".
All entries are from the same interface: "".
Only entries with a count larger than 2 are shown.
|
After the above messages follows a table with the packet
details.
This logs might not be immediately available
due to system activity.
Click on Refresh to get the latest entries.