Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
5 changes: 5 additions & 0 deletions packages/pfsense/changelog.yml
Original file line number Diff line number Diff line change
@@ -1,4 +1,9 @@
# newer versions go on top
- version: "1.3.0"
changes:
- description: Add DHCPv6 support
type: enhancement
link: https://github.com/elastic/integrations/pull/3815
- version: "1.2.0"
changes:
- description: Update package to ECS 8.4.0
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -49,7 +49,10 @@
"direction": "inbound",
"iana_number": "6",
"transport": "tcp",
"type": "ipv4"
"type": "ipv4",
"vlan": {
"id": "12"
}
},
"observer": {
"ingress": {
Expand Down Expand Up @@ -144,7 +147,10 @@
"direction": "inbound",
"iana_number": "17",
"transport": "udp",
"type": "ipv6"
"type": "ipv6",
"vlan": {
"id": "27"
}
},
"observer": {
"ingress": {
Expand Down Expand Up @@ -194,11 +200,7 @@
{
"@timestamp": "2022-12-31T22:06:16.000-04:00",
"client": {
"mac": "4C-55-41-A0-FA-99",
"port": 68
},
"destination": {
"port": 67
"mac": "4C-55-41-A0-FA-99"
},
"ecs": {
"version": "8.4.0"
Expand Down Expand Up @@ -226,7 +228,10 @@
"message": "DHCPDISCOVER from 4c:55:41:a0:fa:99 via eth0.60",
"network": {
"protocol": "dhcp",
"transport": "udp"
"transport": "udp",
"vlan": {
"id": "60"
}
},
"observer": {
"ingress": {
Expand All @@ -245,12 +250,8 @@
"name": "dhcpd",
"pid": 40152
},
"server": {
"port": 67
},
"source": {
"mac": "4C-55-41-A0-FA-99",
"port": 68
"mac": "4C-55-41-A0-FA-99"
},
"tags": [
"preserve_original_event"
Expand Down Expand Up @@ -296,7 +297,8 @@
},
"message": "[26931:0] info: 192.168.1.1 api.opensubtitles.org. A IN",
"network": {
"protocol": "dns"
"protocol": "dns",
"type": "ipv4"
},
"observer": {
"name": "firewall.opnsense.net",
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -49,7 +49,10 @@
"direction": "inbound",
"iana_number": "6",
"transport": "tcp",
"type": "ipv4"
"type": "ipv4",
"vlan": {
"id": "12"
}
},
"observer": {
"ingress": {
Expand Down Expand Up @@ -155,7 +158,10 @@
"direction": "inbound",
"iana_number": "6",
"transport": "tcp",
"type": "ipv4"
"type": "ipv4",
"vlan": {
"id": "12"
}
},
"observer": {
"ingress": {
Expand Down Expand Up @@ -261,7 +267,10 @@
"direction": "inbound",
"iana_number": "17",
"transport": "udp",
"type": "ipv4"
"type": "ipv4",
"vlan": {
"id": "27"
}
},
"observer": {
"ingress": {
Expand Down Expand Up @@ -358,7 +367,10 @@
"direction": "inbound",
"iana_number": "6",
"transport": "tcp",
"type": "ipv4"
"type": "ipv4",
"vlan": {
"id": "12"
}
},
"observer": {
"ingress": {
Expand Down Expand Up @@ -464,7 +476,10 @@
"direction": "inbound",
"iana_number": "6",
"transport": "tcp",
"type": "ipv4"
"type": "ipv4",
"vlan": {
"id": "12"
}
},
"observer": {
"ingress": {
Expand Down Expand Up @@ -570,7 +585,10 @@
"direction": "inbound",
"iana_number": "6",
"transport": "tcp",
"type": "ipv4"
"type": "ipv4",
"vlan": {
"id": "12"
}
},
"observer": {
"ingress": {
Expand Down Expand Up @@ -664,7 +682,10 @@
"direction": "inbound",
"iana_number": "17",
"transport": "udp",
"type": "ipv6"
"type": "ipv6",
"vlan": {
"id": "27"
}
},
"observer": {
"ingress": {
Expand Down Expand Up @@ -759,7 +780,10 @@
"direction": "inbound",
"iana_number": "6",
"transport": "tcp",
"type": "ipv4"
"type": "ipv4",
"vlan": {
"id": "12"
}
},
"observer": {
"ingress": {
Expand Down Expand Up @@ -865,7 +889,10 @@
"direction": "inbound",
"iana_number": "6",
"transport": "tcp",
"type": "ipv4"
"type": "ipv4",
"vlan": {
"id": "12"
}
},
"observer": {
"ingress": {
Expand Down Expand Up @@ -971,7 +998,10 @@
"direction": "inbound",
"iana_number": "6",
"transport": "tcp",
"type": "ipv4"
"type": "ipv4",
"vlan": {
"id": "12"
}
},
"observer": {
"ingress": {
Expand Down Expand Up @@ -1077,7 +1107,10 @@
"direction": "inbound",
"iana_number": "6",
"transport": "tcp",
"type": "ipv4"
"type": "ipv4",
"vlan": {
"id": "12"
}
},
"observer": {
"ingress": {
Expand Down Expand Up @@ -1183,7 +1216,10 @@
"direction": "inbound",
"iana_number": "6",
"transport": "tcp",
"type": "ipv4"
"type": "ipv4",
"vlan": {
"id": "12"
}
},
"observer": {
"ingress": {
Expand Down Expand Up @@ -1289,7 +1325,10 @@
"direction": "inbound",
"iana_number": "6",
"transport": "tcp",
"type": "ipv4"
"type": "ipv4",
"vlan": {
"id": "12"
}
},
"observer": {
"ingress": {
Expand Down Expand Up @@ -1395,7 +1434,10 @@
"direction": "inbound",
"iana_number": "6",
"transport": "tcp",
"type": "ipv4"
"type": "ipv4",
"vlan": {
"id": "12"
}
},
"observer": {
"ingress": {
Expand Down Expand Up @@ -1489,7 +1531,10 @@
"direction": "inbound",
"iana_number": "17",
"transport": "udp",
"type": "ipv4"
"type": "ipv4",
"vlan": {
"id": "27"
}
},
"observer": {
"ingress": {
Expand Down Expand Up @@ -1586,7 +1631,10 @@
"direction": "inbound",
"iana_number": "6",
"transport": "tcp",
"type": "ipv4"
"type": "ipv4",
"vlan": {
"id": "12"
}
},
"observer": {
"ingress": {
Expand Down Expand Up @@ -1692,7 +1740,10 @@
"iana_number": "2",
"packets": 8,
"transport": "igmp",
"type": "ipv4"
"type": "ipv4",
"vlan": {
"id": "12"
}
},
"observer": {
"ingress": {
Expand Down Expand Up @@ -1784,7 +1835,10 @@
"direction": "inbound",
"iana_number": "1",
"transport": "icmp",
"type": "ipv4"
"type": "ipv4",
"vlan": {
"id": "10"
}
},
"observer": {
"ingress": {
Expand Down Expand Up @@ -1869,7 +1923,10 @@
"direction": "inbound",
"iana_number": "1",
"transport": "icmp",
"type": "ipv4"
"type": "ipv4",
"vlan": {
"id": "15"
}
},
"observer": {
"ingress": {
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -2,6 +2,28 @@
<190>Jul 4 09:39:41 dhcpd[64305]: DHCPOFFER on 10.150.60.56 to 4c:55:41:a0:fa:99 (computer-name) via eth0.60
<190>Jul 4 09:39:41 dhcpd[64305]: DHCPREQUEST for 10.150.60.56 (10.150.60.1) from 4c:55:41:a0:fa:99 (computer-name) via eth0.60
<190>Jul 4 09:39:41 dhcpd[64305]: DHCPACK on 10.150.60.56 to 4c:55:41:a0:fa:99 (computer-name) via eth0.60
<14>Jul 4 09:39:41 dhcpleases[18688]: Sending HUP signal to dns daemon(17883)
<13>Jul 4 09:40:40 dhclient[89531]: RENEW
<13>Jul 4 09:40:40 dhclient[89547]: Creating resolv.conf
<13>Jul 4 09:40:40 dhclient[89547]: Creating resolv.conf
<190>Jul 4 09:39:41 dhcpd[64305]: Listening on BPF/igb1.15/5f:a5:54:63:cc:1f/10.50.11.0/25
<190>Jul 4 09:39:41 dhcpd[64305]: Sending on BPF/igb1.15/5f:a5:54:63:cc:1f/10.50.11.0/25
<190>Jul 23 18:07:11 dhcp6c[10256]: restarting
<190>Jul 23 18:07:11 dhcp6c[10256]: Start address release
<190>Jul 23 18:07:11 dhcp6c[10256]: Sending Release
<190>Jul 23 18:07:11 dhcp6c[10256]: remove an address 2a02:cf40:72dc:dd12:7378:913c:b42e:099c/128 on igb0
<190>Jul 23 18:07:11 dhcp6c[10256]: Start address release
<190>Jul 23 18:07:11 dhcp6c[10256]: Sending Release
<190>Jul 23 18:07:11 dhcp6c[10256]: dhcp6c Received RELEASE
<190>Jul 23 18:07:11 dhcp6c[10256]: status code: success
<190>Jul 23 18:07:21 dhcp6c[10256]: add an address 2a02:cf40:72dc:dd12:7378:913c:b42e:099c/128 on igb0
<190>Jul 23 18:11:57 dhcpd[6555]: Listening on Socket/6/igb1.10/9f21:c09b:6837:e2f::/64
<190>Jul 23 18:11:57 dhcpd[6555]: Sending on Socket/6/igb1.10/9f21:c09b:6837:e2f::/64
<190>Jul 23 18:11:57 dhcpd[6555]: Server starting service.
<190>Jul 23 18:11:58 dhcpd[6555]: Solicit message from fe80::e6c9:2b22:f9db:bfad port 546, transaction ID 0x3C21A200
<190>Jul 23 18:11:58 dhcpd[6555]: Picking pool address 2a02:cf40:38d6:c4db:cafb:917b:44ec:c873
<190>Jul 23 18:11:58 dhcpd[6555]: Advertise NA: address 2a02:cf40:38d6:c4db:cafb:917b:44ec:c873 to client with duid 00:02:00:00:0d:e9:30:30:44:30:39:45:2d:31 iaid = -1620146908 valid for 7200 seconds
<190>Jul 23 18:11:58 dhcpd[6555]: Sending Advertise to fe80::e6c9:2b22:f9db:bfad port 546
<190>Jul 23 18:11:58 dhcpd[6555]: Request message from fe80::e6c9:2b22:f9db:bfad port 546, transaction ID 0x36D30200
<190>Jul 23 18:11:58 dhcpd[6555]: Reply NA: address 2a02:cf40:38d6:c4db:cafb:917b:44ec:c873 to client with duid 00:02:00:00:0d:e9:30:30:44:30:39:45:2d:31 iaid = -1620146908 valid for 7200 seconds
<190>Jul 23 18:11:58 dhcpd[6555]: Sending Reply to fe80::e6c9:2b22:f9db:bfad port 546
<190>Jul 23 18:12:00 dhcpd[6555]: Information-request message from fe80::208:0138:95bb:a400 port 546, transaction ID 0x9A75EE00
<190>Jul 23 18:12:00 dhcpd[6555]: Reusing lease for: 2a02:cf40:38d6:c4db:cafb:917b:44ec:c873, age 265 secs < 25%, sending shortened lifetimes - preferred: 4235, valid 6935
Loading