This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Traffic blocked for no reason

Hi Guys

i am seeing A LOT of event in my log viewer about "TCP timestamp is missing"

this is coming from my internal LAN and going to the internal LAN (VLAN to VLAN)

the firewall rule that is refrenced in the log viewer point to rule 11

in rule 11 i have absolutely nothing configured that might block the traffic.

no IPS, no web filter...nothing:

 

this rule is set to allow all internal traffic from all vlans to all vlans.

so...what is blocking this traffic i see in the log viewer???

 

thanks guys!



This thread was automatically locked due to age.
Parents
  • Hi,

    I have almost the same firewall rule for Lan-Lan , except that in that rule's Advanced ->User Applications->Intrusion Prevention , I set it to LAN-DMZ instead of None.

    IPS is working, and no timestamp missing issue as your, but a lot of other detections .

     

    have you  check the config at IPS ->DoS & Spoof Protection ,  as well as on the connecting network switches, probably Vlan setup issues, need firmware updates,

    or good old reboot may sometime work.

     

    Regards,

    Model / Version : XG210 (SFOS 17.5.0 GA)

     

    P/S : No other interconnecting firewall rules were set for each other VLans in the network , as suggested ;

    All my Vlans were also defined at the  Network -> Interfaces -> VLAN .

Reply
  • Hi,

    I have almost the same firewall rule for Lan-Lan , except that in that rule's Advanced ->User Applications->Intrusion Prevention , I set it to LAN-DMZ instead of None.

    IPS is working, and no timestamp missing issue as your, but a lot of other detections .

     

    have you  check the config at IPS ->DoS & Spoof Protection ,  as well as on the connecting network switches, probably Vlan setup issues, need firmware updates,

    or good old reboot may sometime work.

     

    Regards,

    Model / Version : XG210 (SFOS 17.5.0 GA)

     

    P/S : No other interconnecting firewall rules were set for each other VLans in the network , as suggested ;

    All my Vlans were also defined at the  Network -> Interfaces -> VLAN .

Children
No Data