[nzlug] How to keep iptables log messages out of dmesg?

Cliff Pratt enkidu at cliffp.com
Sat Mar 1 14:37:05 NZDT 2008


Volker Kuhlmann wrote:
> On Fri 29 Feb 2008 12:05:26 NZDT +1300, R. Eimann wrote:
> 
>> in my openSuSE 10.3, iptables log entries seem to be put into dmesg by default 
>> (instead of a separate file, /var/log/firewall, for instance). Does anyone 
>> here know how to change this? I.e., put log entries into a file instead of 
>> having them in demsg?
> 
> dmesg is a command which displays the kernel log ring buffer. Nothing to
> do with iptables, except that iptables logs to syslog, and syslog also
> gets copied into the kernel ring buffer.
> 
> The default syslog daemon for openSUSE 10.3 is syslog-ng (although the
> old syslog is also available, but mutually exclusive - for obvious
> reasons).
 >
I wonder on what basis syslog-ng is provided with openSuSE. syslog-ng is 
available in two versions, open source and commercial. The commercial 
version is the only one for which BalaBit supply binaries.

Cheers,

Cliff



More information about the NZLUG mailing list