<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[PfBlocker log format]]></title><description><![CDATA[<p dir="auto">Hi All,</p>
<p dir="auto">I have pfBlocker 1.0.2 on pfSense 2.1.5 (haven't made the 2.2 upgrade yet). I also recently started exporting my logs to a server running ELSA. However I've noticed that the blocked packet logs are rather useless (see screenshot). They state a rule number that was blocked, but no text. So I still have to go to my pf page to check what happened.</p>
<p dir="auto">SO, does anyone know if the new version of pfBlocker adds more useful logs with text strings? And if not, would it be possible to somehow make the logging format customizeable? A hack on my end or a feature request?<br />
<img src="/public/_imported_attachments_/1/Untitled.png" alt="Untitled.png" class=" img-fluid img-markdown" /><br />
<img src="/public/_imported_attachments_/1/Untitled.png_thumb" alt="Untitled.png_thumb" class=" img-fluid img-markdown" /></p>
]]></description><link>https://forum.netgate.com/topic/82220/pfblocker-log-format</link><generator>RSS for Node</generator><lastBuildDate>Wed, 15 Apr 2026 01:13:34 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/82220.rss" rel="self" type="application/rss+xml"/><pubDate>Wed, 01 Apr 2015 21:49:45 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to PfBlocker log format on Fri, 03 Apr 2015 16:29:08 GMT]]></title><description><![CDATA[<p dir="auto">Thank you BBcan! I'll look into that this weekend. I appreciate the helpful answer :)</p>
]]></description><link>https://forum.netgate.com/post/533619</link><guid isPermaLink="true">https://forum.netgate.com/post/533619</guid><dc:creator><![CDATA[browner87]]></dc:creator><pubDate>Fri, 03 Apr 2015 16:29:08 GMT</pubDate></item><item><title><![CDATA[Reply to PfBlocker log format on Thu, 02 Apr 2015 18:45:12 GMT]]></title><description><![CDATA[<p dir="auto">Yes unfortunately, pfSense Syslogs do not contain the "Description" field in its output. I know that user "fearnothing" has written a parser (pfsense 2.2) for ELSA. Its available here:</p>
<p dir="auto">https://groups.google.com/forum/#!topic/security-onion/P4oALAvH-Ek</p>
]]></description><link>https://forum.netgate.com/post/533389</link><guid isPermaLink="true">https://forum.netgate.com/post/533389</guid><dc:creator><![CDATA[BBcan177]]></dc:creator><pubDate>Thu, 02 Apr 2015 18:45:12 GMT</pubDate></item><item><title><![CDATA[Reply to PfBlocker log format on Wed, 01 Apr 2015 22:01:14 GMT]]></title><description><![CDATA[<p dir="auto">pfBlocker does not log anything. It creates firewall rules. Logging and its format is core pf. And no, there is no decription text in pfSense 2.2.x either. If you want description, stop using raw logs.</p>
]]></description><link>https://forum.netgate.com/post/533141</link><guid isPermaLink="true">https://forum.netgate.com/post/533141</guid><dc:creator><![CDATA[doktornotor]]></dc:creator><pubDate>Wed, 01 Apr 2015 22:01:14 GMT</pubDate></item></channel></rss>