Mailinglist Archive: opensuse (1355 mails)

< Previous Next >
Re: [opensuse] firewalld: how to allow these?
  • From: Per Jessen <per@xxxxxxxxxxxx>
  • Date: Thu, 21 Jun 2018 15:11:01 +0200
  • Message-id: <pgg855$13b$1@saturn.local.net>
Carlos E. R. wrote:

on my small laptop freshly installed with Leap 15.0 I get messages
about blocking what I think are multicast from my router and my
printer:

2018-06-21T14:23:38.716460+02:00 Legolas kernel: [103133.028003]
FINAL_REJECT: IN=eth0 OUT=
MAC=01:00:5e:00:00:01:f8:8e:85:64:78:f2:08:00 SRC=192.168.1.1
DST=224.0.0.1 LEN=32 TOS=0x00 PREC=0x00 TTL=1 ID=0 DF PROTO=2

protocol 2 is IGMP, so probably from your router.

2018-06-21T14:23:39.335490+02:00 Legolas kernel: [103133.646980]
FINAL_REJECT: IN=eth0 OUT=
MAC=01:00:5e:00:00:fb:00:1e:0b:08:4c:cb:08:00 SRC=192.168.1.3
DST=224.0.0.251 LEN=32 TOS=0x00 PREC=0x00 TTL=1 ID=27960 PROTO=2

224.0.0.251 is used by mDNS, I believe. I think this might be your
printer saying "I want to use mDNS", but I don't know IGMP very well.

On my computers running 42.3 I don't see similar messages, but also I
don't specificall open anything mentioning "224...".

Run a tcpdump, you'll see the same. Maybe the susefirewall opens for
those by default?

I'm not familiar at all with the new firewalld, so I don't know what I
should open. Or not.

What to open is a matter for you to decide :-)
How to open - I guess that is covered in the firewalld gui ?



--
Per Jessen, Zürich (26.6°C)
http://www.cloudsuisse.com/ - your owncloud, hosted in Switzerland.


--
To unsubscribe, e-mail: opensuse+unsubscribe@xxxxxxxxxxxx
To contact the owner, e-mail: opensuse+owner@xxxxxxxxxxxx

< Previous Next >
Follow Ups
References