use insert to insert the rule into the first entry to input table, or your packet maybe drop by the previous rule
# iptables -I INPUT -j LOG
log file is here check with below command
Show only kernel messages. This implies -b and adds the match “_TRANSPORT=kernel”.
# journalctl -k
https://blog.csdn.net/qq_39405012/article/details/89165805
http://aerostitch.github.io/linux_and_unix/RedHat/iptables_logging.html