diff --git a/roles/logall/templates/rsyslog.d/10-firewall.conf.j2 b/roles/logall/templates/rsyslog.d/10-firewall.conf.j2 index 61281ea9c7b9ad33a349cc5c38bf39425e891aa2..9905590166448106c0167a4df4fcfcd918a67dbb 100644 --- a/roles/logall/templates/rsyslog.d/10-firewall.conf.j2 +++ b/roles/logall/templates/rsyslog.d/10-firewall.conf.j2 @@ -15,7 +15,7 @@ if $programname == 'firewall' then /var/log/firewall/iptables.log if $syslogfacility == '0' and $msg contains 'ff:ff:ff:ff:ff:ff' then ~ # LOG_ALL pour … je sais plus à quoi ça sert … -if $syslogfacility == '0' and $msg contains 'LOG_ALL' and ($msg contains 'SRC=10.' or $msg contains 'SRC=100.64.' or $msg contains 'SRC=172.16.' or $msg contains 'SRC=185.230.76.' or $msg contains 'SRC=185.230.77.' or $msg contains 'SRC=185.230.78.' or $msg contains 'SRC=185.230.79.' or $msg contains 'SRC=2a0c:0700:') then /var/log/firewall/logall.log +if $syslogfacility == '0' and $msg contains 'LOG_ALL' then /var/log/firewall/logall.log & ~ # LOG_MAC_IP pour l'association mac_ip en ipv6