diff --git a/en_US.ISO8859-1/books/handbook/firewalls/chapter.sgml b/en_US.ISO8859-1/books/handbook/firewalls/chapter.sgml index a92ef438f1..6e3a3ce5ec 100644 --- a/en_US.ISO8859-1/books/handbook/firewalls/chapter.sgml +++ b/en_US.ISO8859-1/books/handbook/firewalls/chapter.sgml @@ -2026,13 +2026,11 @@ net.inet.ip.fw.verbose_limit=5 options IPFIREWALL_VERBOSE_LIMIT=5 - This specifies the default number of packets from a - particular rule is to be logged. Without this option, each - repeated occurrences of the same packet will be logged, and - eventually consuming all the free disk space resulting in - services being denied do to lack of resources. The number 5 is the - number of consecutive times to log evidence of this unique - occurrence. + Limits the number of packets logged through + &man.syslogd.8; on a per entry basis. You may wish to use + this option in hostile environments which you want to log + firewall activity. This will close a possible denial of + service attack via syslog flooding. kernel options