The Destination

destination firewall { file("/var/log/firewall");

By default, SUSE comments this line out in order to send these messages to its default location. With most services in SUSE, all the output is sent to the /var/log/messages file because there is not a logging facility for each specific service. So, we assume we have uncommented the destination definition for use on our system so that firewall messages go to a specific destination. The destination specifies that the custom definition firewall will write log messages to the file /var/log/firewall. This enables you to examine firewall-related messages (produced by the iptables facility, which filters network packets) by simply examining a specific log file.

