Index: head/en_US.ISO8859-1/books/handbook/firewalls/chapter.xml =================================================================== --- head/en_US.ISO8859-1/books/handbook/firewalls/chapter.xml +++ head/en_US.ISO8859-1/books/handbook/firewalls/chapter.xml @@ -1697,6 +1697,14 @@ &prompt.root; sysrc firewall_logging="YES" + + Only firewall rules with the option will + be logged. The default rules do not include this option and it + must be manually added. Therefor it is advisable that the default + ruleset is edited for logging. In addition, log rotation may be + desired if the logs are stored in a separate file. + + There is no /etc/rc.conf variable to set logging limits. To limit the number of times a rule is logged per connection attempt, specify the number using this