Multiple logs

Reindl Harald h.reindl at thelounge.net
Sun Dec 27 18:12:42 UTC 2015



Am 27.12.2015 um 18:07 schrieb Matus UHLAR - fantomas:
> On 26.12.15 20:30, kev wrote:
>> I am using bind9 with ubuntu 14.04. I was wondering how to log by
>> indivudual IP.  Ive googled it but didnt find what i was looking
>> for.Thanks,
>
> I'd choose logging at kernel level in iptables firewall.
> ULOG and ulogd can log to libpcap format

since when is iptables a logging tool?
don't abuse it and it's "-j LOG" for such things

besides you risk a self-DOS when not be very careful and bother a 
critical system layer with non critical stuff it hardly has the 
capability to write different logs for different IP's, frankly it don't 
write any logs at all, just the kernel ring-buffer

just use the default query log and grep within cron

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 181 bytes
Desc: OpenPGP digital signature
URL: <https://lists.isc.org/pipermail/bind-users/attachments/20151227/efe837c3/attachment.bin>


More information about the bind-users mailing list