OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • Archive »
  • 19.7 Legacy Series »
  • How to find out rule numbers?
« previous next »
  • Print
Pages: [1]

Author Topic: How to find out rule numbers?  (Read 18260 times)

actionhenkt

  • Newbie
  • *
  • Posts: 49
  • Karma: 2
    • View Profile
How to find out rule numbers?
« on: November 17, 2019, 08:57:29 am »
Hi,

Im trying to set up a logging server where im sending logs from opnsense to. The rule numbers are sent to the logging server but the rule decription is not, im trying to match the rule number I got from the log to the rule number in opnsense to set a description in grafana manually. Is there a way to lookup all rule numbers + description somewhere in opnsense ?
Logged

thewer

  • Newbie
  • *
  • Posts: 2
  • Karma: 0
    • View Profile
Re: How to find out rule numbers?
« Reply #1 on: August 05, 2020, 12:24:06 pm »
I know this is an old post now, but I have just run into the same problem. I would like to get a rule id to description/name mapping out of opnsense. Anyone know where to start?
Logged

thewer

  • Newbie
  • *
  • Posts: 2
  • Karma: 0
    • View Profile
Re: How to find out rule numbers?
« Reply #2 on: August 06, 2020, 01:07:42 am »
For anyone googling this, the best I have come up with is to look at /tmp/rules.debug which contains rule ID's and then descriptions as a comment. Then some grep/sed/awk magic you can probably get what you want...

EDIT: forgot to say that "pfctl -vvsr" is also needed to get the rule number to label mapping :)

"pfctl -vvsr" - gives rule id (e.g. 179) to label (e.g. b6da060442c571d1957683eaace57cce)
"/tmp/rules.debug" - gives label (e.g. b6da060442c571d1957683eaace57cce) to description (e.g. "allow ssh in")
« Last Edit: August 06, 2020, 01:19:20 am by thewer »
Logged

  • Print
Pages: [1]
« previous next »
  • OPNsense Forum »
  • Archive »
  • 19.7 Legacy Series »
  • How to find out rule numbers?
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2023 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2