OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • Archive »
  • 19.7 Legacy Series »
  • How do I log all dropped incoming connections?
« previous next »
  • Print
Pages: [1]

Author Topic: How do I log all dropped incoming connections?  (Read 4186 times)

Taomyn

  • Sr. Member
  • ****
  • Posts: 444
  • Karma: 20
    • View Profile
How do I log all dropped incoming connections?
« on: August 06, 2019, 11:57:20 am »
In order to diagnose issues, what's the best way to enable logging for all dropped inbound connections in the firewall?
Logged

unipacket

  • Newbie
  • *
  • Posts: 34
  • Karma: 1
    • View Profile
Re: How do I log all dropped incoming connections?
« Reply #1 on: August 07, 2019, 03:08:35 am »
Hi Taomyn,  I think dropped inbound connections are logged by default.  When opening the Live Log, I see connection attempts from the Internet and I did not create any rules for inbound traffic.
Logged

Taomyn

  • Sr. Member
  • ****
  • Posts: 444
  • Karma: 20
    • View Profile
Re: How do I log all dropped incoming connections?
« Reply #2 on: August 07, 2019, 03:49:09 am »
Not for me, only rules I have enabled logging for appear. Perhaps it's different with a newer installation, but I've been through several major upgrades and it might have been different when I built the firewall.
Logged

banym

  • Sr. Member
  • ****
  • Posts: 468
  • Karma: 31
  • Free Human Being, FreeBSD, Linux and Mac nerd
    • View Profile
    • Banym
Re: How do I log all dropped incoming connections?
« Reply #3 on: August 07, 2019, 11:28:21 am »
Hello,

check what you have configured under: System: Settings: Logging

There are options called Log Firewall Default Blocks

Maybe it is turned off for what you want.

Regards,

Dominik
Logged
Twitter: banym
Mastodon: banym@bsd.network
Blog: https://www.banym.de

Taomyn

  • Sr. Member
  • ****
  • Posts: 444
  • Karma: 20
    • View Profile
Re: How do I log all dropped incoming connections?
« Reply #4 on: August 12, 2019, 03:13:47 pm »
Quote from: dzajac on August 07, 2019, 11:28:21 am
Hello,

check what you have configured under: System: Settings: Logging

There are options called Log Firewall Default Blocks

Maybe it is turned off for what you want.

Regards,

Dominik


Thanks, that's what it was though it's now called "Log packets matched from the default block rules put in the ruleset " - I'll keep it enabled for now and see how disk space goes for the logs.
Logged

  • Print
Pages: [1]
« previous next »
  • OPNsense Forum »
  • Archive »
  • 19.7 Legacy Series »
  • How do I log all dropped incoming connections?
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2024 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2