Hi, I log most of my logged packets to PCAP format and the remaining few packets using SYSLOG. I am trying to limit logged packets to 64 Bytes.
I have set my log like this: # cat params LOG_PCAP=NFLOG\(1,64,1\) LOG_TEXT=NFLOG\(2,0,1\) Unfortunately shorewall still logs full packets. When I open /var/log/ulog/ulogd.pcap file with tcpdump I can see full size packets. Please can you help? -- Dovydas Sankauskas ------------------------------------------------------------------------------ _______________________________________________ Shorewall-users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/shorewall-users
