Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > comp.os.linux.networking > #665

Re: iptables limit all logging

From "D. Stussy" <spam+newsgroups@bde-arc.ampr.org>
Newsgroups comp.os.linux.networking
Subject Re: iptables limit all logging
Date 2011-10-02 11:43 -0700
Message-ID <j6abcu$4sb$1@snarked.org> (permalink)
References <j69a7i$nv7$1@news.m-online.net>

Show all headers | View raw


"Christian Brandt" <brandtc@psi5.com> wrote in message
news:j69a7i$nv7$1@news.m-online.net...
> I have several iptables -j LOG statements each with a 10/min limit and a
> describing --log-prefix. But I want one big limit while retaining the
> log-prefixes.
>
> In other words something like the non working example:
>
> iptables -A log_all -j LOG -m limit --limit 10/m
> iptables -A INPUT  -j log_all --log-prefix="example1 "
> iptables -A OUTPUT -j log_all --log-prefix="example2 "
>
> Obviously "--log-prefix" is only valid for job LOG and not for generic
> chains.
>
> Possible at all? Any ideas?

Negate your condition:  use  "! --limit" and see if that works.  I don't
see that choice in the syntax on the manual page, but sometimes, not
everything is documented.  It does say, "(unless the '!' flag is used)" so
perhaps it is indeed valid.

Back to comp.os.linux.networking | Previous | Next — Previous in thread | Next in thread | Find similar | Unroll thread


Thread

iptables limit all logging Christian Brandt <brandtc@psi5.com> - 2011-10-02 11:17 +0200
  Re: iptables limit all logging "D. Stussy" <spam+newsgroups@bde-arc.ampr.org> - 2011-10-02 11:43 -0700
    Re: iptables limit all logging Christian Brandt <brandtc@psi5.com> - 2011-10-03 08:32 +0200
      Re: iptables limit all logging "D. Stussy" <spam+newsgroups@bde-arc.ampr.org> - 2011-10-03 15:02 -0700
        Re: iptables limit all logging Christian Brandt <brandtc@psi5.com> - 2011-10-06 10:34 +0200
          Re: iptables limit all logging "D. Stussy" <spam+newsgroups@bde-arc.ampr.org> - 2011-10-06 12:34 -0700
          Re: iptables limit all logging Jorgen Grahn <grahn+nntp@snipabacken.se> - 2011-10-06 23:30 +0000

csiph-web