Displaying 1 result from an estimated 1 matches for "int2dmz".
2012 Dec 04
2
shorewall6: IP fragementation getting blocked?
...some IP fragmentation happening, and that
is getting REJECTed. My policy is to REJECT, and I have an ALLOW for the
particular communication I want. What I''m getting in my logs is (I''ve
logged the ACCEPT rule for clarity):
Dec 4 16:11:19 xxxx kernel: [67682.239124]
Shorewall:int2dmz:ACCEPT:IN=br1 OUT=br0
SRC=xxxx:xxxx:xxxx:xxxx:xxxx:xxxx:xxxx:xxxx
DST=xxxx:xxxx:xxxx:xxxx:xxxx:xxxx:xxxx:xxxx LEN=1496 TC=0 HOPLIMIT=63
FLOWLBL=0 FRAG:0 INCOMPLETE ID:56a39152 PROTO=UDP SPT=37801 DPT=25826
LEN=1905
Dec 4 16:11:19 xxxx kernel: [67682.239148]
Shorewall:int2dmz:REJECT:IN=br1 OUT...