
Metacom MC601 Router
Page 23
User Manual
3.5.2 Firewall log
This page allows the user to interrogate the log file on the device.
Lines
Maximum number of lines to display from the log file.
Start of message
Message prefix that was entered in the firewall rules or firewall access rules.
Refresh
Search the log files for matching messages and display them in the textbox.
Note:
•
The log file is kept in memory and saved to the flash once a day. Only a history of 3 days is
kept by the device. In the current version only the memory resident log file can be interrogated.
•
Log messages for packets arriving from the WAN are the only ones to be stored and listed.
Traffic between the LAN ports is not logged.
E.g. sample log data
Jan 31 06:17:31 MC60100576 user.debug kernel: fw_Dropped (IN): IN=ppp0 OUT= MAC=
SRC=65.55.192.61 DST=10.252.10.207 LEN=52 TOS=0x00 PREC=0x60 TTL=111 ID=33975 DF
PROTO=TCP SPT=443 DPT=1100 WINDOW=65535 RES=0x00 ACK URGP=0
•
The fw_
Dropped
message indicates that this packet was dropped by the router.
•
The
(IN)
means it came from the WAN or ppp0 interface (incoming).
•
SRC
is the source IP address of this packet
•
DST
is the destination IP address (in this case the static IP of the WAN interface)
•
PROTO
specifies that it was a TCPIP packet.
•
SPT
is the source port
•
DPT
is the destination port
•
The rest of the details are TCPIP specific properties.
Cellular Continuum Series
Copyright © Metacom (Pty) Ltd