Firewall Logging (All Traffic / All Connections)

king232000

New member
Joined
May 26, 2011
Messages
3
Location
Algeria
hello ill try to explain my problem;

i have a dedicated server with windows 2008 and i activated the firewall and also logs for all profiles;




but when i open my .log file after a ddos attack like UDP flood / TCP flood / distributed dns DOS ... etc
i have no logs at all about this event.

before i had a server using windows 2003 server and after any flood attack i can see the attack logs and block the ips / subnet of attacker (when it's possible using the ip security policies)

i mean the windows 2008 firewall is not logging all the connections like the 2003's firewall.

any idea ?

thank you in advance
peace
 
Last edited by a moderator:
Maybe the point is that you are saving the PUBLIC profile log.

Try the following:
Code:
http://technet.microsoft.com/en-us/library/cc753781%28WS.10%29.aspx

And tell me if you can see something in there.

Also take a look here:
Code:
http://technet.microsoft.com/en-us/library/cc754451%28WS.10%29.aspx
 
hello and thank you for your post;

i tried all steps without any changes
:s
any other idea ?

are there any software doing this ? (log all traffic connexions IP:PORTS ... etc)
thanks
 
Back
Top