Hi I'm running 8.0 with a stock SuSEfirewall2 setup and a cable modem, and have 2 questions about logging: 1) /var/log/warn, /var/log/firewall, and /var/log/messages all seem to contain a similar mix of information - for example in /var/log/firewall I see Aug 3 18:15:38 betsy kernel: eth1: no IPv6 routers present Aug 3 18:17:46 betsy kernel: EXT2-fs warning: maximal mount count reached, running e2fsck is recommended Aug 3 18:18:19 betsy kernel: SuSE-FW-UNAUTHORIZED-TARGET IN=eth1 OUT= MAC=01:00:5e:00:00:01:00:20:40:67:0f:eb:08:00 SRC=192.168.100.1 DST=224.0.0.1 LEN=28 TOS=0x00 PREC=0xC0 TTL=1 ID=0 PROTO=2 I don't see how the first 2 items here relate to the firewall ? But the same items also appear in /var/log/warn and /var/log/messages. This seems to be a bit of an overkill, how can I make sure that only firewall messages go to the firewall log ? And how can I stop firewall messages going to the other 2 log files? And what is the purpose of /var/log/warn? 2) I seem to get SuSE-FW-UNAUTHORIZED-TARGET reports every minute or two. They are as far as I can tell all due to IGMP chat between routers on the cable system and are basically harmless except that the messages quickly fill up the log(s). Is thare any way I can tell SuSEfirewall2 not to log this type of transaction? -- Pam R: Any opinions expressed in this email are not necessarily those of a sane person.