Mailinglist Archive: opensuse-bugs (14451 mails)

< Previous Next >
[Bug 440187] New: SuSEfirewall2 blocks communication between devices in internal zone
  • From: bugzilla_noreply@xxxxxxxxxx
  • Date: Thu, 30 Oct 2008 07:14:16 -0600 (MDT)
  • Message-id: <bug-440187-21960@xxxxxxxxxxxxxxxxxxxxxxxxx/>
https://bugzilla.novell.com/show_bug.cgi?id=440187


Summary: SuSEfirewall2 blocks communication between devices in
internal zone
Product: openSUSE 11.0
Version: Final
Platform: All
OS/Version: openSUSE 11.0
Status: NEW
Severity: Normal
Priority: P5 - None
Component: Security
AssignedTo: lnussel@xxxxxxxxxx
ReportedBy: wolfgang@xxxxxxxxxxxxx
QAContact: qa@xxxxxxx
Found By: ---


I think that is a bug but it could even be by intention so reporting it for
evaluation.

I use OpenVPN and SuSEfirewall2 on 11.0 and added tun0 to the FW_DEV_INT list.
(and FW_SERVICES_EXT_UDP="1194" bug connecting works anyway).

But now I get a lot of:
SFW2-FWDint-DROP-DEFLT IN=tun0 OUT=eth1 SRC=10.8.0.6 DST=192.168.1.1 LEN=96
TOS=0x00 PREC=0x00 TTL=127 ID=2361 PROTO=UDP SPT=137 DPT=137 LEN=76

eth1 is the other internal interface and I expected that the two internal
interfaces are not filtered at all (or just by antispoofing stuff and alike).

If it is by intention isn't it possible to use SuSEfirewall2 together with
openVPN any longer?


--
Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug.

< Previous Next >
Follow Ups