Home
Help
Search
Login
Register
OPNsense Forum
»
English Forums
»
24.7 Production Series
»
Question About Log Files
« previous
next »
Print
Pages: [
1
]
Author
Topic: Question About Log Files (Read 399 times)
House Of Cards
Newbie
Posts: 11
Karma: 0
Question About Log Files
«
on:
September 29, 2024, 08:07:57 am »
Hi there,
I switched from pfSense to OPNSense, and one thing that confuses me a bit is the logging of firewall rules.
In pfSense, I could use the default allow any rule and watch the logs to determine existing traffic, and then create rules based off the examined traffic... In OPNSense, all I see in the live logs is the "Allow anything from the firewall host itself", even though I have rules created which are successfully routing traffic.
How can I exclude all these default rules from overwhelming the logs?
Thanks
Logged
dseven
Sr. Member
Posts: 315
Karma: 33
Re: Question About Log Files
«
Reply #1 on:
September 29, 2024, 11:30:52 am »
Each rule can be configured to log or not. The "Default allow LAN to any rule" would be quite noisy, but you could do it temporarily enable it, I suppose. New rules would not log by default - you'd have to check the box when creating them.
If the automatically generated rules are causing too much noise in the live view, you could use filters to exclude them.
Logged
House Of Cards
Newbie
Posts: 11
Karma: 0
Re: Question About Log Files
«
Reply #2 on:
September 29, 2024, 06:23:33 pm »
I think my confusion is with these default rules.
If they are created by default, and can't be modified, why on earth does OPNSense clog your logs with them in the first place?
It makes setup so much more difficult.
Logged
troplin
Newbie
Posts: 6
Karma: 1
Re: Question About Log Files
«
Reply #3 on:
September 29, 2024, 07:42:17 pm »
You can enable/disable logging for the auto-generated rules under „Firewall“ -> „Settings“ -> „Advanced“ (Section „Logging“)
Logged
House Of Cards
Newbie
Posts: 11
Karma: 0
Re: Question About Log Files
«
Reply #4 on:
September 30, 2024, 12:43:23 am »
Thanks, that helps...
Logged
Print
Pages: [
1
]
« previous
next »
OPNsense Forum
»
English Forums
»
24.7 Production Series
»
Question About Log Files