From 88de0344ac4636567d7fdd04a2cd4cf4f41a25ae Mon Sep 17 00:00:00 2001 From: Martinski4GitHub <119833648+Martinski4GitHub@users.noreply.github.com> Date: Wed, 25 Feb 2026 23:26:42 -0800 Subject: [PATCH] Improved Ethernet Filter Configuration Modified syslog-ng Ethernet filter configuration file to prevent it from capturing log entries intended for the Skynet/firewall log files --- syslog-ng.share/ethernet | 11 +++++++---- 1 file changed, 7 insertions(+), 4 deletions(-) diff --git a/syslog-ng.share/ethernet b/syslog-ng.share/ethernet index 8bf1993..18ceb6e 100644 --- a/syslog-ng.share/ethernet +++ b/syslog-ng.share/ethernet @@ -1,15 +1,17 @@ -# log ethernet change to /opt/var/log/ethernet.log only +# log ethernet change to /opt/var/log/ethernet.log only # +# Last Modified: 2026-Feb-25 # destination d_ethernet { file("/opt/var/log/ethernet.log"); }; filter f_kernel { - program("kernel"); + program("kernel") and + not match('BLOCKED -' value("MESSAGE")); }; filter f_ethernet { - message("eth1") or + (message("eth1") or message("eth2") or message("eth3") or message("eth4") or @@ -18,7 +20,8 @@ filter f_ethernet { message("eth7") or message("eth8") or message("br0:") or - message("br1:"); + message("br1:")) and + not match('IN=eth.* OUT=.* MAC=.*' value("MESSAGE")); }; log {