[ previous ] [ next ] [ threads ]
 From:  "Chris Buechler" <cbuechler at gmail dot com>
 Cc:  m0n0wall at lists dot m0n0 dot ch
 Subject:  Re: [m0n0wall] Block + Nolog Checkpoint cluster
 Date:  Fri, 10 Aug 2007 21:39:54 -0400
On 8/10/07, DTakemori at thdfsg dot com <DTakemori at thdfsg dot com> wrote:
> Rule 0:21 is
> block in log quick on sis2 any to any
> and appears to take precidence over any rules I put on the sis2 interface.
> So the question is, how can I put in a rule to block these packets but not
> log doing so AND have that rule be processed before the 0:21rule?

Turn off logging for the default rule (log settings tab), and add a
block rule that logs on all your interfaces at the bottom of your rule