Looking to log all states/connections

  • Not sure how pfsense does this by default.  Is there already a log that exists?  Is there a retention time period by default?  Can the retention period be changed?

    Thanks in advance.

  • Rebel Alliance Developer Netgate

    Use the syslog settings to send those off to a syslog server and you can hold/store them there indefinitely. There isn't yet a viable way to keep the logs indefinitely on the firewall.

  • Hey thanks Jimp.

    I got Kiwi Syslog server setup and its captureing messages from pfsense.

    I have it capturing the firewall log.  Which is working about 75% of what I need.  The firewall log shows connections from the WAN to a remote IP and vice versa, but not about where they originate in side the LAN like the state table does.


    This is what I get.  Can I not log actual states?

  • Rebel Alliance Developer Netgate

    No, that isn't possible yet.


  • Thanks for the quick reply, maybe if I tell you exactly what I'm trying to do you might know another solution.

    In the gaming forum and actually all across the internet people are having problems with multiple PC's running Battlefield 3 behind the same pfsense router.  Not everyone has this problem.  I dont.  But I'm trying to recreate this problem.

    I believe it happens in certain setups when PunkBuster on two or more PC's communicate on the same port.  I need to be able to verify this.