Enable Remote Logging / Firewall events



  • I have enabled Enable Remote Logging and selected Firewall events.  For reasons unknown, my logs are filled with thousands of the following:

    2014-03-08 14:42:30 16 6 192.168.x.x pf Your-IP 10.194.36.112
    2014-03-08 14:42:30 16 6 192.168.x.x pf Server-IP 172.29.255.84
    2014-03-08 14:42:30 16 6 192.168.x.x pf Gateway-IP 172.29.255.84
    2014-03-08 14:42:30 16 6 192.168.x.x pf Client-Ethernet-Address 00:25:f2:11:22:33
    2014-03-08 14:42:30 16 6 192.168.x.x pf file "blocked.bin" [|bootp]
    2014-03-08 14:42:32 16 6 192.168.2.1 pf 172.29.255.84.67 > 255.255.255.255.68: BOOTP/DHCP, Reply, length 386, hops 1, xid 0x64722332, Flags [Broadcast]

    Question:  Is there a way to only receive the packets that match a rule instead of everything that is part of the "Firewall events" options?

    Regards,
    Ultrajones


Log in to reply