if you already run sshguard-ipfw you have an entry in /etc/syslog.conf that you like. it would be nice if upgrade of sshguard-ipfw did not mash it with a new one that is commented out. it is the commenting out that really bites. randy