Reading Kernel IPTABLES LOGS

"Dave Filchak" <[email protected]> Wed, 17 Mar 2004 08:51:12 -0500
Newsgroups gmane.linux.admin.managers
Organization Zuka Inc.
Message-ID <20040317135115.KCF27950.tomts36-srv.bellnexxia.net@willow>
Hi all,

 

Can someone clarify a couple of things for me? In an Iptables rule, if a
machine has two nics and two or more IP's attached to them, and no specific
interface is specified in the rule, does the rule apply to all interfaces
and IP's? Or do you have to write a rule for every IP? 

 

Secondly, just so I know what I am reading in my output from Log Watch (RH 9
system) can someone tell me what the following log says in English please?

(just want to know how I would read the log to understand what is happening
here):

 

 

>From 61.34.16.13 - 8 packets

      To 199.243.xxx.xxx - 4 packets

         Service: 135 (tcp/135) (,eth1,none) - 2 packets

         Service: 135 (tcp/135) (FIREWALL LOG:,eth1,none) - 2 packets

      To 199.243.xxx.xxx - 4 packets

         Service: 135 (tcp/135) (,eth1,none) - 2 packets

         Service: 135 (tcp/135) (FIREWALL LOG:,eth1,none) - 2 packets

 

This log does not mention (nor do any other logs) anything about eth0.
Shouldn't it of do I possibly have my rules not complete?

 

Thanks in advance.

 

Dave

 

 

 

 
_______________________________________________
LinuxManagers mailing list - http://www.linuxmanagers.org
submissions: LinuxManagers-35TzE1X9F6582KRnZfj+bdi2O/[email protected]
subscribe/unsubscribe: http://www.linuxmanagers.org/mailman/listinfo/linuxmanagers