[syslog-ng] RES: Problem to Get UDP Packets - Syslog-ng

Matus UHLAR - fantomas uhlar at fantomas.sk
Wed Mar 25 18:12:31 UTC 2020


On 25.03.20 17:54, William Luiz Ribeiro Vasconcelos Da Silva wrote:
>I still understand that it is not a firewall, because the machine that sends the packets is on the same network as my machine: 10.96.145.98> 10.96.145.42

iptables on destination linux machine is also a firewall.
firewall does not necessarily mean another machine

>Yes, I am receiving the packets on the network interface where the IP "10.96.145.42" is allocated, in my case eth1.

is it the "mgalnxa01" in your capture example below?

>10:46:13.529331 IP (tos 0x20, ttl 251, id 33055, offset 0, flags [none], proto UDP (17), length 243)
>    10.96.145.98.syslog > mgalnxa01.9514: [udp sum ok] SYSLOG, length: 215

next time run tcpdump with "-n" option


-- 
Matus UHLAR - fantomas, uhlar at fantomas.sk ; http://www.fantomas.sk/
Warning: I wish NOT to receive e-mail advertising to this address.
Varovanie: na tuto adresu chcem NEDOSTAVAT akukolvek reklamnu postu.
LSD will make your ECS screen display 16.7 million colors


More information about the syslog-ng mailing list