* iptables ログ [#pd15596a]
** ロギング [#d281569d]
iptables -A INPUT -j LOG --log-prefix "IPTABLES_INPUT_LOG: " --log-level=info
** シスログの切り出し[#v79b8a71]
vi /etc/rsyslog.d/iptables.conf
:msg, contains, "IPTABLES_INPUT_LOG" -/var/log/iptables.log
& ~
/etc/rc.d/init.d/rsyslog restart
** ログロテート [#gff9c245]
/var/log/iptables.log {
rotate 5
weekly
compress
missing ok
notifempty
}
** 参考 [#fa751f71]
- http://blog.shadypixel.com/log-iptables-messages-to-a-separate-file-with-rsyslog/
- http://www.atmarkit.co.jp/flinux/rensai/linuxtips/747logrotatecmd.html