fwmon is a firewall monitoring tool. It works with the Linux operating system, and either iptables or ipchains. It is able to provide more detailed information on network traffic than the standard ipchains log. It is possible for some versions of fwmon to crash when the kernel sends an oversized packet. If an attacker were able to exploit this condition, it may be possible to create a denial of service condition. If firewall monitoring is disrupted, further attacks against the host would go undetected. This would not impact the effectiveness of the firewall, only the quality of the log data.
                    
                    
                        fwmon is a firewall monitoring tool. It works with the Linux operating system, and either iptables or ipchains. It is able to provide more detailed information on network traffic than the standard ipchains log. It is possible for some versions of fwmon to crash when the kernel sends an oversized packet. If an attacker were able to exploit this condition, it may be possible to create a denial of service condition. If firewall monitoring is disrupted, further attacks against the host would go undetected. This would not impact the effectiveness of the firewall, only the quality of the log data.