1
<section id="sect:filter.firewall.select-action">
2
<title>Select Action Filter</title>
3
<para>ID: <constant>select-action</constant></para>
4
<para>This filter specification can be used to select only the
5
firewall events that were permitted or denied.
8
<title>Parameters</title>
11
<parameter>action_match</parameter>
14
<para>This parameter contains the action that should selected:
17
<term><constant>denied</constant></term>
19
<para>Select only denied events.</para>
23
<term><constant>permitted</constant></term>
25
<para>Select only permitted events.</para>
29
<term><constant>-</constant></term>
31
<para>This is also a possible action when we can't determine
32
from the log information if this event was
33
<constant>denied</constant> or <constant>permitted</constant>.
39
<para>Defaults to <literal>denied</literal>.</para>