kern/62598: no logging on ipfw loadable module

joe barbish3 at adelphia.net
Mon Feb 9 10:50:22 PST 2004


>Number:         62598
>Category:       kern
>Synopsis:       no logging on ipfw loadable module
>Confidential:   no
>Severity:       non-critical
>Priority:       medium
>Responsible:    freebsd-bugs
>State:          open
>Quarter:        
>Keywords:       
>Date-Required:
>Class:          sw-bug
>Submitter-Id:   current-users
>Arrival-Date:   Mon Feb 09 10:50:21 PST 2004
>Closed-Date:
>Last-Modified:
>Originator:     joe
>Release:        4.9
>Organization:
>Environment:
>Description:
   By original design, it's not suppose to be an mandatory requirement that you enable IPFW by compiling it's options into your customized FBSD kernel. IPFW is included in the basic FBSD install as a separate run time loadable module. For some unknown reason the loadable module was compiled with, logging disabled This means the loadable IPFW module has absolutely no logging available. This configuration is non-logical, does not reflect the needs of the majority of IPFW users, and is pretty much useless. A firewall without logging ability is just plain unheard of.     
>How-To-Repeat:
    Nothing to repeat, FBSD is delivered that way.  
>Fix:
In the next stable version release compile the ipfw loadable module with "options IPFIREWALL_VERBOSE" and "options FIREWALL_VERBOSE_LIMIT=5"


>Release-Note:
>Audit-Trail:
>Unformatted:


More information about the freebsd-bugs mailing list