Log suppression
-
Running v2.7.0 with pfBlockerNG-devel v3.2.0_6.
Is it still the case that suppressing the WAN logs for the auto rule will disable the collection of the statistics on the Reports tab (IP Block in particular)? Like most, i also suppress the logs for normal background noise but only just noticed that the pfB stats were not being updated and associated this with having suppressed its logs via the firewall rule.
You cannot have one without the other basically?
Cheers
Pops -
Which "auto rule" are you referencing? Perhaps a screen shot showing your rules would be helpful.
By default the "IP Block Stats" report uses unified.log, but there are other options
do you have records in the unified.log if the is the file you are reporting from?
Firewall -> pfBlockerNG -> Logs (Log Files / unified.log)
-
@jrey The FW rule the service creates. But in my case, i have set up the WAN rule manually for more control and using pfB to create the alias. In this specific case, i sync'd the config to another box and did a force update in the usual way however the unified.log file was not created despite seeing the "blocks" count on the widget increase.
Only after enabling logging on the FW WAN rule did the txt log files get populated. My preference is to turn off the WAN logging but of course keep the stats operational (IP Block Stats in particular from its respective txt file).
-
Disabling logging on the FW rule continues not to update the pfBlocker stats/reports pages. I understood this to be independent so is there something else at play here and must i have the FW log rammed with pfB alerts being triggered on the WAN?