What does this packet log message mean?
26 Sep
2000
26 Sep
'00
17:34
Hello! I build a linux firewall with SuSE linux and ipchains. I've set up rules for FTP and SSH. (Firewall 201.0.0.1, Server wich provides FTP and ssh (also a Linux box)200.0.0.1, local net 192.168.2.0/24) Every time when I try to do ssh or FTP to another host outside my local net, I see in my log files something like: kernel: Packet log: eth1-i DENY eth1 PROTO=6 200.0.0.1:1043 201.0.0.1:113 L=60 S=0x00 I=152 F=0x4000 T=64 SYN (#5) and kernel: Packet log: eth1-o DENY eth1 PROTO=6 201.0.0.1:113 200.0.0.1:1044 L=40 S=0x00 I=888 F=0x0000 T=255 (#2) Does anybody know what causes this traffic? Sven
8584
Age (days ago)
8584
Last active (days ago)
2 comments
3 participants
participants (3)
-
Alexander Reelsen
-
Roman Drahtmueller
-
Sven Schultheiß