Hi all. In my firewall logs I noticed this records (I've cut off some positions): ------------------------------------------------------------------------ SuSE-FW-ACCEPT IN=eth0 SRC= LEN=48 TOS=0x00 PREC=0x80 TTL=108 ID=24399 DF PROTO=TCP SPT=1425 DPT=1433 WINDOW=16384 RES=0x00 SYN URGP=0 OPT (020405B401010402) SuSE-FW-DROP-DEFAULT IN=eth0 SRC= LEN=48 TOS=0x00 PREC=0x80 TTL=108 ID=24399 DF PROTO=TCP SPT=1425 DPT=1433 WINDOW=16384 RES=0x00 SYN URGP=0 OPT (020405B401010402) ------------------------------------------------------------------------ Firewall allow packet to go, and them drop it. Is it normal behaviour? -- ----------------------------------------------------------------- Dominik Składanowski e-mail: dominik.skladanowski@ch.pw.edu.pl -----------------------------------------------------------------
-----BEGIN PGP SIGNED MESSAGE----- Hi Dominik!
Firewall allow packet to go, and them drop it. Is it normal behaviour?
It is, more or less. The packet was dropped, but unfortunately it
got *logged* before as if it were accepted. Nothing to worry about.
I sent a patch to Roman a few months ago, but it was not included in
the official patches.
Regards, Andy
- --
Andreas J. Mueller email:
Firewall allow packet to go, and them drop it. Is it normal behaviour?
It is, more or less. The packet was dropped, but unfortunately it got *logged* before as if it were accepted. Nothing to worry about.
I sent a patch to Roman a few months ago, but it was not included in the official patches.
Thanks. Maybe some day it will be included. Greetings -- ----------------------------------------------------------------- Dominik Składanowski e-mail: dominik.skladanowski@ch.pw.edu.pl -----------------------------------------------------------------
Hi Andreas, is your patch/ diff available somewhere? - Not on the public area of www.muelli.net... I would be interested in what you have changed. On Mittwoch, 15. Januar 2003 17:10, Andreas J Mueller wrote:
Firewall allow packet to go, and them drop it. Is it normal behaviour?
It is, more or less. The packet was dropped, but unfortunately it got *logged* before as if it were accepted. Nothing to worry about.
I sent a patch to Roman a few months ago, but it was not included in the official patches.
-- Eat, sleep and go running, David Huecking. Encrypted eMail welcome! GnuPG/ PGP-Key: 0x57809216. Fingerprint: 3DF2 CBE0 DFAA 4164 02C2 4E2A E005 8DF7 5780 9216
participants (3)
-
Andreas J Mueller
-
David Huecking
-
Dominik Składanowski