This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

VPN SSL-Client

Hallo,

ich möchte über DSL einen Zugang zur UTM9 per VPN SSL-Client herstellen.
Der Tunnel wird stabil aufgebaut, allerdings kann ich vom Client aus nicht auf INTERNAL pingen.
In Firewall-LOG steht:
2013:02:13-10:14:33 mail ulogd[4481]: id="2005" severity="info" sys="SecureNet" sub="packetfilter" name="IP spoofing drop" action="IP spoofing drop" fwrule="60008" initf="tun0" srcip="192.168.10.6" dstip="10.0.0.1" proto="1" length="60" tos="0x00" prec="0x00" ttl="128" type="8" code="0" 

2013:02:13-10:14:33 mail ulogd[4481]: id="2005" severity="info" sys="SecureNet" sub="packetfilter" name="IP spoofing drop" action="IP spoofing drop" fwrule="60008" initf="tun0" srcip="192.168.10.6" dstip="10.0.0.1" proto="17" length="75" tos="0x00" prec="0x00" ttl="128" srcport="65087" dstport="53" 
2013:02:13-10:14:33 mail ulogd[4481]: id="2005" severity="info" sys="SecureNet" sub="packetfilter" name="IP spoofing drop" action="IP spoofing drop" fwrule="60008" initf="tun0" srcip="192.168.10.6" dstip="10.0.0.10" proto="17" length="75" tos="0x00" prec="0x00" ttl="128" srcport="65087" dstport="53" 
2013:02:13-10:14:38 mail ulogd[4481]: id="2005" severity="info" sys="SecureNet" sub="packetfilter" name="IP spoofing drop" action="IP spoofing drop" fwrule="60008" initf="tun0" srcip="192.168.10.6" dstip="10.0.0.1" proto="17" length="75" tos="0x00" prec="0x00" ttl="128" srcport="65087" dstport="53" 
2013:02:13-10:14:38 mail ulogd[4481]: id="2005" severity="info" sys="SecureNet" sub="packetfilter" name="IP spoofing drop" action="IP spoofing drop" fwrule="60008" initf="tun0" srcip="192.168.10.6" dstip="10.0.0.10" proto="17" length="75" tos="0x00" prec="0x00" ttl="128" srcport="65087" dstport="53" 
2013:02:13-10:14:39 mail ulogd[4481]: id="2005" severity="info" sys="SecureNet" sub="packetfilter" name="IP spoofing drop" action="IP spoofing drop" fwrule="60008" initf="tun0" srcip="192.168.10.6" dstip="10.0.0.1" proto="1" length="60" tos="0x00" prec="0x00" ttl="128" type="8" code="0" 
2013:02:13-10:14:44 mail ulogd[4481]: id="2005" severity="info" sys="SecureNet" sub="packetfilter" name="IP spoofing drop" action="IP spoofing drop" fwrule="60008" initf="tun0" srcip="192.168.10.6" dstip="10.0.0.1" proto="1" length="60" tos="0x00" prec="0x00" ttl="128" type="8" code="0" 


Woran kann das liegen? 
"automatische Firewallregeln erstellen" ist aktiviert worden.
Der Täuschungsschutz ist Aus
Wenn der Täuschungsschutz auf "normal" steht, werden die Pings als "fingiertes Packet" geblockt.


Danke

Martin


This thread was automatically locked due to age.