Trying to see pf's logs using tcpdump

Erik U. erik.u at dnainternet.net
Sat Aug 28 15:37:38 PDT 2004


Erik U. wrote:
> On FreeBSD 5.2.1.
> 
> I installed pf from the ports, configured and ran it.
> I just get this error when trying to watch pf's logs:
> 
> [root at nat] ~ $ tcpdump -n -e -ttt -r /var/log/pflog
> tcpdump: unknown data link type 117
> 
> Why can't they just put the logs in text not in some damn binary..

Doh.. seems like i already found the answer: pftcpdump.
Well at least someone else having the same problem will
find this using google...



More information about the freebsd-current mailing list