m0n0wall: status
Sat May 12 21:24:08 UTC 2007

Note: make sure to remove any sensitive information (passwords, maybe also IP addresses) before posting information from this page in public places (like mailing lists)!
Passwords in config.xml have been automatically removed.

This status page includes the following information:

System uptime
 9:24PM  up 9 secs, 0 users, load averages: 1.33, 0.29, 0.10

Interfaces
lnc0: flags=108843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST,NEEDSGIANT> mtu 1500
	inet 192.168.1.3 netmask 0xffffff00 broadcast 192.168.1.255
	ether 00:0c:29:43:7f:30
lnc1: flags=108843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST,NEEDSGIANT> mtu 1500
	inet 192.168.2.2 netmask 0xffffff00 broadcast 192.168.2.255
	ether 00:0c:29:43:7f:3a
lo0: flags=8049<UP,LOOPBACK,RUNNING,MULTICAST> mtu 16384
	inet 127.0.0.1 netmask 0xff000000

Routing tables
Routing tables

Internet:
Destination        Gateway            Flags    Refs      Use  Netif Expire
default            192.168.2.1        UGS         0        0   lnc1
127.0.0.1          127.0.0.1          UH          0        0    lo0
192.168.1          link#1             UC          0        0   lnc0
192.168.1.1        link#1             UHLW        1        1   lnc0
192.168.1.10       00:0e:0c:aa:7c:4a  UHLW        1       25   lnc0   1200
192.168.2          link#2             UC          0        0   lnc1
192.168.2.1        link#2             UHLW        2        0   lnc1

ipfw show
ipfw: getsockopt(IP_FW_GET): Protocol not available

ipnat -lv
List of active MAP/Redirect filters:
map lnc1 192.168.1.0/24 -> 0.0.0.0/32 proxy port ftp ftp/tcp
map lnc1 192.168.1.0/24 -> 0.0.0.0/32 portmap tcp/udp auto
map lnc1 192.168.1.0/24 -> 0.0.0.0/32
rdr lnc1 0.0.0.0/0 port 3399 -> 192.168.1.2 port 3389 tcp

List of active sessions:

List of active host mappings:

ipfstat -v
opts 0x40 name /dev/ipl
bad packets:		in 0	out 0
 IPv6 packets:		in 0 out 0
 input packets:		blocked 0 passed 24 nomatch 0 counted 0 short 0
output packets:		blocked 0 passed 34 nomatch 0 counted 0 short 0
 input packets logged:	blocked 0 passed 0
output packets logged:	blocked 0 passed 0
 packets logged:	input 0 output 0
 log failures:		input 0 output 0
fragment state(in):	kept 0	lost 0	not fragmented 0
fragment state(out):	kept 0	lost 0	not fragmented 0
packet state(in):	kept 2	lost 0
packet state(out):	kept 1	lost 0
ICMP replies:	0	TCP RSTs sent:	0
Invalid source(in):	0
Result cache hits(in):	0	(out):	0
IN Pullups succeeded:	0	failed:	0
OUT Pullups succeeded:	0	failed:	0
Fastroute successes:	0	failures:	0
TCP cksum fails(in):	0	(out):	0
IPF Ticks:	15
Packet log flags set: (0)
	none

ipfstat -nio
@1 pass out quick on lo0 all
@2 pass out quick on lnc0 proto udp from 192.168.1.3/32 port = bootps to any port = bootpc
@3 pass out quick on lnc1 proto udp from any port = bootpc to any port = bootps
@4 pass out quick on lnc0 all keep state
@5 pass out quick on lnc1 all keep state
@6 block out log quick all
@1 pass in quick on lo0 all
@2 block in log quick from any to any with short
@3 block in log quick from any to any with ipopts
@4 pass in quick on lnc0 proto udp from any port = bootpc to 255.255.255.255/32 port = bootps
@5 pass in quick on lnc0 proto udp from any port = bootpc to 192.168.1.3/32 port = bootps
@6 block in log quick on lnc1 from 192.168.1.0/24 to any
@7 block in log quick on lnc1 proto udp from any port = bootps to 192.168.1.0/24 port = bootpc
@8 pass in quick on lnc1 proto udp from any port = bootps to any port = bootpc
@9 block in log quick on lnc0 from !192.168.1.0/24 to any
@10 skip 1 in proto tcp from any to any flags S/FSRA
@11 block in log quick proto tcp from any to any
@12 block in log quick on lnc0 all head 100
@1 pass in quick from 192.168.1.0/24 to 192.168.1.3/32 keep state group 100
@2 pass in quick from 192.168.1.0/24 to any keep state group 100
@13 block in log quick on lnc1 all head 200
@1 pass in quick proto tcp from any to 192.168.1.2/32 port = rdp keep state group 200
@14 block in log quick all

unparsed ipnat rules
map lnc1 192.168.1.0/24  -> 0/32 proxy port ftp ftp/tcp
map lnc1 192.168.1.0/24  -> 0/32 portmap tcp/udp auto
map lnc1 192.168.1.0/24  -> 0/32
rdr lnc1 0/0 port 3399 -> 192.168.1.2 port 3389 tcp

unparsed ipfilter rules
# loopback
pass in quick on lo0 all
pass out quick on lo0 all

# block short packets
block in log quick all with short

# block IP options
block in log quick all with ipopts

# allow access to DHCP server on LAN
pass in quick on lnc0 proto udp from any port = 68 to 255.255.255.255 port = 67
pass in quick on lnc0 proto udp from any port = 68 to 192.168.1.3 port = 67
pass out quick on lnc0 proto udp from 192.168.1.3 port = 67 to any port = 68

# WAN spoof check
block in log quick on lnc1 from 192.168.1.0/24 to any

# allow our DHCP client out to the WAN
# XXX - should be more restrictive
# (not possible at the moment - need 'me' like in ipfw)
pass out quick on lnc1 proto udp from any port = 68 to any port = 67
block in log quick on lnc1 proto udp from any port = 67 to 192.168.1.0/24 port = 68
pass in quick on lnc1 proto udp from any port = 67 to any port = 68

# LAN/OPT spoof check (needs to be after DHCP because of broadcast addresses)
block in log quick on lnc0 from ! 192.168.1.0/24 to any

# Block TCP packets that do not mark the start of a connection
skip 1 in proto tcp all flags S/SAFR
block in log quick proto tcp all

#---------------------------------------------------------------------------
# group head 100 - LAN interface
#---------------------------------------------------------------------------
block in log quick on lnc0 all head 100

# let out anything from the firewall host itself and decrypted IPsec traffic
pass out quick on lnc0 all keep state 

#---------------------------------------------------------------------------
# group head 200 - WAN interface
#---------------------------------------------------------------------------
block in log quick on lnc1 all head 200

# let out anything from the firewall host itself and decrypted IPsec traffic
pass out quick on lnc1 all keep state 

# make sure the user cannot lock himself out of the webGUI
pass in quick from 192.168.1.0/24 to 192.168.1.3 keep state group 100

# User-defined rules follow
pass in quick proto tcp from any to 192.168.1.2 port = 3389 keep state group 200 
pass in quick from 192.168.1.0/24 to any keep state group 100 
	
#---------------------------------------------------------------------------
# default rules (just to be sure)
#---------------------------------------------------------------------------
block in log quick all
block out log quick all

unparsed ipfw rules
add 50000 set 4 pass all from 192.168.1.3 to any
add 50001 set 4 pass all from any to 192.168.1.3

resolv.conf
domain toga
nameserver 192.168.1.1
nameserver 192.168.1.2
nameserver 195.29.150.3

Processes
USER     PID %CPU %MEM   VSZ   RSS  TT  STAT STARTED      TIME COMMAND
root      10 103.0  0.0     0     8  ??  RL    9:24PM   0:01.54 [idle]
root     134 24.0  8.9  7404  6908  ??  SN    9:24PM   0:00.22 /usr/local/bin/php status.php
root      35  4.0  0.0     0     8  ??  DL    9:24PM   0:00.24 [pagezero]
root     136  3.0  2.9  2700  2216  ??  S     9:24PM   0:00.05 /usr/local/sbin/mini_httpd -S -E /var/etc/cert.pem -c **.php|**.cgi -u root -maxproc 16 -i /var/run/mini_httpd.pid
root     106  0.7  1.3  1372   988  ??  Ss    9:24PM   0:00.03 /usr/sbin/syslogd -ss
root      11  0.7  0.0     0     8  ??  WL    9:24PM   0:00.02 [swi1: net]
root     122  0.4  1.3  1456  1036 con- S     9:24PM   0:00.02 /usr/local/bin/msntp -r -P no -l /var/run/msntp.pid -x 300 pool.ntp.org
root       1  0.2  1.1  1416   872  ??  SLs   9:24PM   0:00.05 /sbin/init --
root       0  0.0  0.0     0     0  ??  WLs   9:24PM   0:00.00 [swapper]
root       2  0.0  0.0     0     8  ??  DL    9:24PM   0:00.00 [crypto]
root       3  0.0  0.0     0     8  ??  DL    9:24PM   0:00.00 [crypto returns]
root       4  0.0  0.0     0     8  ??  DL    9:24PM   0:00.00 [g_event]
root       5  0.0  0.0     0     8  ??  DL    9:24PM   0:00.03 [g_up]
root       6  0.0  0.0     0     8  ??  DL    9:24PM   0:00.02 [g_down]
root       7  0.0  0.0     0     8  ??  DL    9:24PM   0:00.00 [kqueue taskq]
root       8  0.0  0.0     0     8  ??  DL    9:24PM   0:00.00 [acpi_task_0]
root       9  0.0  0.0     0     8  ??  DL    9:24PM   0:00.00 [acpi_task_1]
root      12  0.0  0.0     0     8  ??  WL    9:24PM   0:00.02 [swi4: clock sio]
root      13  0.0  0.0     0     8  ??  WL    9:24PM   0:00.00 [swi3: vm]
root      14  0.0  0.0     0     8  ??  DL    9:24PM   0:00.00 [yarrow]
root      15  0.0  0.0     0     8  ??  WL    9:24PM   0:00.00 [swi6: task queue]
root      16  0.0  0.0     0     8  ??  WL    9:24PM   0:00.00 [swi2: cambio]
root      17  0.0  0.0     0     8  ??  DL    9:24PM   0:00.00 [acpi_task_2]
root      18  0.0  0.0     0     8  ??  WL    9:24PM   0:00.00 [swi5: +]
root      19  0.0  0.0     0     8  ??  DL    9:24PM   0:00.00 [thread taskq]
root      20  0.0  0.0     0     8  ??  WL    9:24PM   0:00.01 [swi6: Giant taskq]
root      21  0.0  0.0     0     8  ??  WL    9:24PM   0:00.00 [irq9: acpi0]
root      22  0.0  0.0     0     8  ??  WL    9:24PM   0:00.00 [irq14: ata0]
root      23  0.0  0.0     0     8  ??  WL    9:24PM   0:00.00 [irq15: ata1]
root      24  0.0  0.0     0     8  ??  WL    9:24PM   0:00.00 [irq19: lnc1 uhci0]
root      25  0.0  0.0     0     8  ??  DL    9:24PM   0:00.00 [usb0]
root      26  0.0  0.0     0     8  ??  DL    9:24PM   0:00.00 [usbtask]
root      27  0.0  0.0     0     8  ??  WL    9:24PM   0:00.00 [irq17: mpt0]
root      28  0.0  0.0     0     8  ??  DL    9:24PM   0:00.00 [mpt_recovery0]
root      29  0.0  0.0     0     8  ??  WL    9:24PM   0:00.01 [irq18: lnc0]
root      30  0.0  0.0     0     8  ??  WL    9:24PM   0:00.00 [irq1: atkbd0]
root      31  0.0  0.0     0     8  ??  WL    9:24PM   0:00.00 [swi0: sio]
root      32  0.0  0.0     0     8  ??  DL    9:24PM   0:00.00 [fdc0]
root      33  0.0  0.0     0     8  ??  DL    9:24PM   0:00.03 [md0]
root      34  0.0  0.0     0     8  ??  DL    9:24PM   0:00.00 [pagedaemon]
root      36  0.0  0.0     0     8  ??  DL    9:24PM   0:00.00 [idlepoll]
root      37  0.0  0.0     0     8  ??  DL    9:24PM   0:00.00 [bufdaemon]
root      38  0.0  0.0     0     8  ??  DL    9:24PM   0:00.00 [syncer]
root      39  0.0  0.0     0     8  ??  DL    9:24PM   0:00.00 [vnlru]
root      40  0.0  0.0     0     8  ??  DL    9:24PM   0:00.00 [softdepflush]
root      41  0.0  0.0     0     8  ??  DL    9:24PM   0:00.00 [schedcpu]
root     101  0.0  1.8  1888  1428  ??  Ss    9:24PM   0:00.00 /sbin/ipmon -sD
root     109  0.0  2.7  2616  2052  ??  Ss    9:24PM   0:00.01 /usr/local/sbin/mini_httpd -S -E /var/etc/cert.pem -c **.php|**.cgi -u root -maxproc 16 -i /var/run/mini_httpd.pid
nobody   114  0.0  1.4  1400  1096  ??  S     9:24PM   0:00.01 /usr/local/sbin/dnsmasq -l /var/db/dhcpd.leases -s toga
root     116  0.0  2.3  2228  1768  ??  Ss    9:24PM   0:00.00 /usr/local/sbin/dhcpd -cf /var/etc/dhcpd.conf lnc0
root     133  0.0  1.5  1684  1188  ??  S     9:24PM   0:00.01 /bin/sh /etc/rc.initial console
root     135  0.0  2.9  2700  2216  ??  S     9:24PM   0:00.00 /usr/local/sbin/mini_httpd -S -E /var/etc/cert.pem -c **.php|**.cgi -u root -maxproc 16 -i /var/run/mini_httpd.pid
root     156  0.0  1.5  1684  1128  ??  SN    9:24PM   0:00.01 sh -c ps xauww 2>&1
root     157  0.0  1.2  1440   928  ??  RN    9:24PM   0:00.01 ps xauww
root     120  0.0  1.5  1684  1160 con- S     9:24PM   0:00.02 /bin/sh /usr/local/bin/runmsntp.sh /var/run/runmsntp.pid /var/run/msntp.pid 300  pool.ntp.org

dhcpd.conf
option domain-name "toga";
default-lease-time 7200;
max-lease-time 86400;
authoritative;
log-facility local7;
ddns-update-style none;
subnet 192.168.1.0 netmask 255.255.255.0 {
	pool {
		range 192.168.1.30 192.168.1.100;
	}
	option routers 192.168.1.3;
	option domain-name-servers 192.168.1.3;
	option netbios-name-servers 192.168.1.2;
	option netbios-node-type 8;
}
host s_lan_0 {
	hardware ethernet 00:19:D1:4C:D7:F4;
	fixed-address 192.168.1.11;
}
host s_lan_1 {
	hardware ethernet 00:19:5B:0F:6F:C3;
	fixed-address 192.168.1.12;
}
host s_lan_2 {
	hardware ethernet 00:12:79:c7:01:fd;
	fixed-address 192.168.1.29;
}

ez-ipupdate.cache
cat: /conf/ez-ipupdate.cache: No such file or directory

df
Filesystem 512-blocks  Used Avail Capacity  Mounted on
/dev/md0        25566 23922  1644    94%    /
devfs               2     2     0   100%    /dev
/dev/ad0a       19662 15956  3706    81%    /cf

racoon.conf
cat: /var/etc/racoon.conf: No such file or directory

SPD
No SPD entries.

SAD
No SAD entries.

last 200 system log entries
May 12 21:24:06 m0n0wall syslogd: kernel boot file is /kernel
May 12 21:24:06 m0n0wall kernel: Copyright (c) 1992-2006 The FreeBSD Project.
May 12 21:24:06 m0n0wall kernel: Copyright (c) 1979, 1980, 1983, 1986, 1988, 1989, 1991, 1992, 1993, 1994
May 12 21:24:06 m0n0wall kernel: The Regents of the University of California. All rights reserved.
May 12 21:24:06 m0n0wall kernel: FreeBSD is a registered trademark of The FreeBSD Foundation.
May 12 21:24:06 m0n0wall kernel: FreeBSD 6.2-RC1 #0: Sat Dec 23 16:41:48 CET 2006
May 12 21:24:06 m0n0wall kernel: root@mb62.neon1.net:/usr/src/sys/i386/compile/M0N0WALL_GENERIC
May 12 21:24:06 m0n0wall kernel: ACPI APIC Table: <PTLTD  	 APIC  >
May 12 21:24:06 m0n0wall kernel: Timecounter "i8254" frequency 1193182 Hz quality 0
May 12 21:24:06 m0n0wall kernel: CPU: Intel(R) Pentium(R) 4 CPU 3.00GHz (2995.61-MHz 686-class CPU)
May 12 21:24:06 m0n0wall kernel: Origin = "GenuineIntel"  Id = 0xf48  Stepping = 8
May 12 21:24:06 m0n0wall kernel: Features=0xfebfbff<FPU,VME,DE,PSE,TSC,MSR,PAE,MCE,CX8,APIC,SEP,MTRR,PGE,MCA,CMOV,PAT,PSE36,CLFLUSH,DTS,ACPI,MMX,FXSR,SSE,SSE2,SS>
May 12 21:24:06 m0n0wall kernel: Features2=0x15<SSE3,RSVD2,DS_CPL>
May 12 21:24:06 m0n0wall kernel: AMD Features=0x100000<NX>
May 12 21:24:06 m0n0wall kernel: real memory  = 100663296 (96 MB)
May 12 21:24:06 m0n0wall kernel: avail memory = 76288000 (72 MB)
May 12 21:24:06 m0n0wall kernel: MADT: Forcing active-low polarity and level trigger for SCI
May 12 21:24:06 m0n0wall kernel: ioapic0 <Version 1.1> irqs 0-23 on motherboard
May 12 21:24:06 m0n0wall kernel: wlan: mac acl policy registered
May 12 21:24:06 m0n0wall kernel: ath_hal: 0.9.17.2 (AR5210, AR5211, AR5212, RF5111, RF5112, RF2413, RF5413)
May 12 21:24:06 m0n0wall kernel: acpi0: <PTLTD   RSDT> on motherboard
May 12 21:24:06 m0n0wall kernel: acpi0: Power Button (fixed)
May 12 21:24:06 m0n0wall kernel: Timecounter "ACPI-fast" frequency 3579545 Hz quality 1000
May 12 21:24:06 m0n0wall kernel: acpi_timer0: <24-bit timer at 3.579545MHz> port 0x1008-0x100b on acpi0
May 12 21:24:06 m0n0wall kernel: cpu0: <ACPI CPU> on acpi0
May 12 21:24:06 m0n0wall kernel: acpi_throttle0: <ACPI CPU Throttling> on cpu0
May 12 21:24:06 m0n0wall kernel: pcib0: <ACPI Host-PCI bridge> port 0xcf8-0xcff on acpi0
May 12 21:24:06 m0n0wall kernel: pci0: <ACPI PCI bus> on pcib0
May 12 21:24:06 m0n0wall kernel: pcib1: <ACPI PCI-PCI bridge> at device 1.0 on pci0
May 12 21:24:06 m0n0wall kernel: pci1: <ACPI PCI bus> on pcib1
May 12 21:24:06 m0n0wall kernel: isab0: <PCI-ISA bridge> at device 7.0 on pci0
May 12 21:24:06 m0n0wall kernel: isa0: <ISA bus> on isab0
May 12 21:24:06 m0n0wall kernel: atapci0: <Intel PIIX4 UDMA33 controller> port 0x1f0-0x1f7,0x3f6,0x170-0x177,0x376,0x1050-0x105f at device 7.1 on pci0
May 12 21:24:06 m0n0wall kernel: ata0: <ATA channel 0> on atapci0
May 12 21:24:06 m0n0wall kernel: ata1: <ATA channel 1> on atapci0
May 12 21:24:06 m0n0wall kernel: uhci0: <Intel 82371AB/EB (PIIX4) USB controller> port 0x1060-0x107f irq 19 at device 7.2 on pci0
May 12 21:24:06 m0n0wall kernel: uhci0: [GIANT-LOCKED]
May 12 21:24:06 m0n0wall kernel: usb0: <Intel 82371AB/EB (PIIX4) USB controller> on uhci0
May 12 21:24:06 m0n0wall kernel: usb0: USB revision 1.0
May 12 21:24:06 m0n0wall kernel: uhub0: Intel UHCI root hub, class 9/0, rev 1.00/1.00, addr 1
May 12 21:24:06 m0n0wall kernel: uhub0: 2 ports with 2 removable, self powered
May 12 21:24:06 m0n0wall kernel: pci0: <bridge> at device 7.3 (no driver attached)
May 12 21:24:06 m0n0wall kernel: pci0: <display, VGA> at device 15.0 (no driver attached)
May 12 21:24:06 m0n0wall kernel: mpt0: <LSILogic 1030 Ultra4 Adapter> port 0x1080-0x10ff mem 0xec800000-0xec800fff irq 17 at device 16.0 on pci0
May 12 21:24:06 m0n0wall kernel: mpt0: [GIANT-LOCKED]
May 12 21:24:06 m0n0wall kernel: mpt0: MPI Version=1.2.0.0
May 12 21:24:06 m0n0wall kernel: lnc0: <PCNet/PCI Ethernet adapter> port 0x1400-0x147f irq 18 at device 17.0 on pci0
May 12 21:24:06 m0n0wall kernel: lnc0: Attaching PCNet/PCI Ethernet adapter
May 12 21:24:06 m0n0wall kernel: lnc0: [GIANT-LOCKED]
May 12 21:24:06 m0n0wall kernel: lnc0: Ethernet address: 00:0c:29:43:7f:30
May 12 21:24:06 m0n0wall kernel: lnc0: if_start running deferred for Giant
May 12 21:24:06 m0n0wall kernel: lnc0: PCnet-PCI
May 12 21:24:06 m0n0wall kernel: lnc1: <PCNet/PCI Ethernet adapter> port 0x1480-0x14ff irq 19 at device 18.0 on pci0
May 12 21:24:06 m0n0wall kernel: lnc1: Attaching PCNet/PCI Ethernet adapter
May 12 21:24:06 m0n0wall kernel: lnc1: [GIANT-LOCKED]
May 12 21:24:06 m0n0wall kernel: lnc1: Ethernet address: 00:0c:29:43:7f:3a
May 12 21:24:06 m0n0wall kernel: lnc1: if_start running deferred for Giant
May 12 21:24:06 m0n0wall kernel: lnc1: PCnet-PCI
May 12 21:24:06 m0n0wall kernel: acpi_acad0: <AC Adapter> on acpi0
May 12 21:24:06 m0n0wall kernel: atkbdc0: <Keyboard controller (i8042)> port 0x60,0x64 irq 1 on acpi0
May 12 21:24:06 m0n0wall kernel: atkbd0: <AT Keyboard> irq 1 on atkbdc0
May 12 21:24:06 m0n0wall kernel: kbd0 at atkbd0
May 12 21:24:06 m0n0wall kernel: atkbd0: [GIANT-LOCKED]
May 12 21:24:06 m0n0wall kernel: sio0: <16550A-compatible COM port> port 0x3f8-0x3ff irq 4 flags 0x10 on acpi0
May 12 21:24:06 m0n0wall kernel: sio0: type 16550A
May 12 21:24:06 m0n0wall kernel: sio1: <16550A-compatible COM port> port 0x2f8-0x2ff irq 3 on acpi0
May 12 21:24:06 m0n0wall kernel: sio1: type 16550A
May 12 21:24:06 m0n0wall kernel: fdc0: <floppy drive controller> port 0x3f0-0x3f5,0x3f7 irq 6 drq 2 on acpi0
May 12 21:24:06 m0n0wall kernel: fdc0: [FAST]
May 12 21:24:06 m0n0wall kernel: fd0: <1440-KB 3.5" drive> on fdc0 drive 0
May 12 21:24:06 m0n0wall kernel: pmtimer0 on isa0
May 12 21:24:06 m0n0wall kernel: orm0: <ISA Option ROMs> at iomem 0xc0000-0xc7fff,0xc8000-0xc8fff,0xc9000-0xc9fff,0xdc000-0xdffff,0xe0000-0xe3fff on isa0
May 12 21:24:06 m0n0wall kernel: vga0: <Generic ISA VGA> at port 0x3c0-0x3df iomem 0xa0000-0xbffff on isa0
May 12 21:24:06 m0n0wall kernel: sc0: <System console> at flags 0x100 on isa0
May 12 21:24:06 m0n0wall kernel: sc0: VGA <16 virtual consoles, flags=0x300>
May 12 21:24:06 m0n0wall kernel: Timecounter "TSC" frequency 2995606596 Hz quality 800
May 12 21:24:06 m0n0wall kernel: Timecounters tick every 1.000 msec
May 12 21:24:06 m0n0wall kernel: Fast IPsec: Initialized Security Association Processing.
May 12 21:24:06 m0n0wall kernel: IP Filter: v4.1.13 initialized.  Default = block all, Logging = enabled
May 12 21:24:06 m0n0wall kernel: md0: Preloaded image </mfsroot> 13631488 bytes at 0xc0a0e8c0
May 12 21:24:06 m0n0wall kernel: ad0: 204MB <VMware Virtual IDE Hard Drive 00000001> at ata0-master PIO4
May 12 21:24:06 m0n0wall kernel: acd0: CDROM <VMware Virtual IDE CDROM Drive/00000001> at ata1-master PIO4
May 12 21:24:06 m0n0wall kernel: Waiting 5 seconds for SCSI devices to settle
May 12 21:24:06 m0n0wall kernel: Trying to mount root from ufs:/dev/md0
May 12 21:24:06 m0n0wall dnsmasq[114]: started, version 2.35 cachesize 150
May 12 21:24:06 m0n0wall dnsmasq[114]: compile time options: no-IPv6 GNU-getopt ISC-leasefile no-DBus no-I18N
May 12 21:24:06 m0n0wall dnsmasq[114]: reading /var/db/dhcpd.leases
May 12 21:24:06 m0n0wall dnsmasq[114]: reading /etc/resolv.conf
May 12 21:24:06 m0n0wall dnsmasq[114]: using nameserver 195.29.150.3#53
May 12 21:24:06 m0n0wall dnsmasq[114]: using nameserver 192.168.1.2#53
May 12 21:24:06 m0n0wall dnsmasq[114]: using nameserver 192.168.1.1#53
May 12 21:24:06 m0n0wall dnsmasq[114]: read /etc/hosts - 2 addresses
May 12 21:24:06 m0n0wall dhcpd: Internet Systems Consortium DHCP Server V3.0.5rc2
May 12 21:24:06 m0n0wall dhcpd: Copyright 2004-2006 Internet Systems Consortium.
May 12 21:24:06 m0n0wall dhcpd: All rights reserved.
May 12 21:24:06 m0n0wall dhcpd: For info, please visit http://www.isc.org/sw/dhcp/
May 12 21:24:07 m0n0wall kernel: lnc1: Device timeout -- Resetting

last 50 filter log entries

ls /conf
config.xml

ls /var/run
dhcpd.pid
dnsmasq.pid
htpasswd
ipmon.pid
ld-elf.so.hints
log
logpriv
mini_httpd.pid
runmsntp.pid
syslog.pid
utmp

config.xml
<?xml version="1.0"?>
<m0n0wall>
    <version>1.6</version>
    <lastchange>1179004800</lastchange>
    <system>
        <hostname>m0n0wall</hostname>
        <domain>toga</domain>
        <dnsallowoverride/>
        <username>admin</username>
        <password>xxxxx</password>
        <timezone>Europe/Zagreb</timezone>
        <time-update-interval>300</time-update-interval>
        <timeservers>pool.ntp.org</timeservers>
        <webgui>
            <protocol>https</protocol>
            <port/>
        </webgui>
        <dnsserver>192.168.1.1</dnsserver>
        <dnsserver>192.168.1.2</dnsserver>
        <dnsserver>195.29.150.3</dnsserver>
    </system>
    <interfaces>
        <lan>
            <if>lnc0</if>
            <ipaddr>192.168.1.3</ipaddr>
            <subnet>24</subnet>
            <media/>
            <mediaopt/>
        </lan>
        <wan>
            <if>lnc1</if>
            <media/>
            <mediaopt/>
            <spoofmac/>
            <ipaddr>192.168.2.2</ipaddr>
            <subnet>24</subnet>
            <gateway>192.168.2.1</gateway>
        </wan>
    </interfaces>
    <staticroutes/>
    <pppoe/>
    <pptp/>
    <bigpond/>
    <dyndns>
        <type>dyndns</type>
        <username/>
        <password/>
        <host/>
        <mx/>
        <server/>
        <port/>
    </dyndns>
    <dnsupdate/>
    <dhcpd>
        <lan>
            <enable/>
            <range>
                <from>192.168.1.30</from>
                <to>192.168.1.100</to>
            </range>
            <defaultleasetime/>
            <maxleasetime/>
            <staticmap>
                <mac>00:19:D1:4C:D7:F4</mac>
                <ipaddr>192.168.1.11</ipaddr>
                <descr>Marijana</descr>
            </staticmap>
            <staticmap>
                <mac>00:19:5B:0F:6F:C3</mac>
                <ipaddr>192.168.1.12</ipaddr>
                <descr>Igor</descr>
            </staticmap>
            <staticmap>
                <mac>00:12:79:c7:01:fd</mac>
                <ipaddr>192.168.1.29</ipaddr>
                <descr>Laptop (Mama)</descr>
            </staticmap>
            <winsserver>192.168.1.2</winsserver>
        </lan>
    </dhcpd>
    <pptpd>
        <mode/>
        <redir/>
        <localip/>
        <remoteip/>
    </pptpd>
    <dnsmasq>
        <enable/>
        <regdhcp/>
    </dnsmasq>
    <snmpd>
        <syslocation/>
        <syscontact/>
        <rocommunity>public</rocommunity>
    </snmpd>
    <diag>
        <ipv6nat>
            <ipaddr/>
        </ipv6nat>
    </diag>
    <bridge/>
    <syslog/>
    <nat>
        <rule>
            <protocol>tcp</protocol>
            <external-port>3399</external-port>
            <target>gandalf</target>
            <local-port>3389</local-port>
            <interface>wan</interface>
            <descr>gandalf RDC</descr>
        </rule>
    </nat>
    <filter>
        <rule>
            <interface>wan</interface>
            <protocol>tcp</protocol>
            <source>
                <any/>
            </source>
            <destination>
                <address>gandalf</address>
                <port>3389</port>
            </destination>
            <descr>NAT gandalf RDC</descr>
        </rule>
        <rule>
            <type>pass</type>
            <interface>lan</interface>
            <source>
                <network>lan</network>
            </source>
            <destination>
                <any/>
            </destination>
            <descr>Default LAN -&gt; any</descr>
        </rule>
    </filter>
    <shaper/>
    <ipsec/>
    <aliases>
        <alias>
            <name>gandalf</name>
            <address>192.168.1.2</address>
            <descr/>
        </alias>
    </aliases>
    <proxyarp/>
    <wol/>
</m0n0wall>