Starting logs

Guillaume Cornet corg@cyberspace.org
Mon, 10 Dec 2001 04:02:29 -0800 (PST)


Hello,

I am a complete newbie at iptables. I am trying to start logging as a first step before doing something else.

I have a single ethernet card, and just want to experiment and design a personal firewall.

My default policies are DROP for all three filter built-in chains, and I just add

iptables -A OUTPUT -j LOG --log-prefix _OUTPUT_
iptables -A INPUT -j LOG --log-prefix _INPUT_

iptables -A OUTPUT -j ACCEPT
iptables -A INPUT -j ACCEPT

As I use a striped down (busybox) version of syslog, maybe it is the problem, and that is what I need to decide.

Are my rules correct? Should I get logs with them?

Any hints are welcome.

Guillaume Cornet

_____________________________________________________________
Want a new web-based email account ? ---> http://www.firstlinux.net