Page MenuHomeVyOS Platform

Firewall - Add options for logging packets
Needs testing, Requires assessmentPublicFEATURE REQUEST


Add options provided by log statements, that let packets be delivered to user-space:

If the group number is specified, the Linux kernel will pass the packet to nfnetlink_log which will multicast the packet through a netlink socket to the specified multicast group. One or more userspace processes may subscribe to the group to receive the packets, see libnetfilter_queue documentation for details. This is a non-terminating statement, so the rule evaluation continues after the packet is logged.


Difficulty level
Unknown (require assessment)
Why the issue appeared?
Will be filled on close
Is it a breaking change?
Unspecified (possibly destroys the router)
Issue type
Feature (new functionality)

Event Timeline

n.fort changed the task status from Open to Confirmed.Fri, Mar 3, 12:04 PM
n.fort claimed this task.
n.fort created this task.
n.fort changed Version from - to vyos-1.4-rolling-202303030317.
n.fort changed the task status from Confirmed to In progress.Mon, Mar 13, 5:51 PM
Viacheslav changed the task status from In progress to Needs testing.Tue, Mar 21, 12:13 PM