• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Firewall rule name in logs

Firewalling
firewalls rules logs filtering naming
2
2
1.2k
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • A
    alsii
    last edited by Apr 15, 2019, 1:18 PM

    Regarding the pfsense firewall:

    • Can I configure it to include the firewall rule name in each log entry ?

    • Can I put any name in the rule, is there some character restrictions (as comma) ?

    My aim is to include tags in rule names to filter the logs before they are indexed into a SIEM

    1 Reply Last reply Reply Quote 0
    • A
      akuma1x
      last edited by akuma1x Apr 15, 2019, 7:34 PM Apr 15, 2019, 7:33 PM

      Technically, these are NOT called rule names, but descriptions instead.

      The description of my firewall rules (on LAN is where I'm logging) are in my firewall logs. If you've got no rules created, you'll have to make some that actually log the data. After that, if you look in Status -> System Logs -> Firewall in the Rule column it lists the rule description(s).

      There's also the 10 digit unique (I think) tracking ID code to make them quick to find or index.

      The only restriction listed for rule descriptions is max of 52 characters. Don't know anything about special characters, however. Here's some talk about some description stuff.

      https://forum.netgate.com/topic/92254/firewall-rule-description-length-limitation

      Jeff

      1 Reply Last reply Reply Quote 0
      1 out of 2
      • First post
        1/2
        Last post
      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.