I am wanting to syslog all traffic to a log collector, eg source ip xxx, dst ip xxxx dst port xxxx.
I can do this by adding -j LOG to the firewall zone custom field in LUCI, and it works. But I guess my router isn't capable of handling it and it starts dropping packets.
Interestingly, the CPU isn't maxing out, gets to around 50%. Makes me wonder if its not able to write to the flash memory quick enough.
Any suggestions for workaround? Other than by an enterprise firewall that can do it...
I used to do this in pfsense on a VM, and it worked great, but its annoying having to bring my whole network down every time i need to patch the host