This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

425 new install 7.504 problems routing

Hi!

With all ids on i got many of this:

What rule is it?

2010:03:16-18:09:40 astaro-ext1-1 ulogd[29574]: id="2001" severity="info" sys="SecureNet" sub="packetfilter" name="Packet dropped" action="drop" fwrule="60002" seq="0" initf="eth0" outitf="eth1" dstmac="00:1a:8c:f0[:D]5:c0" srcmac="00:13:21:78:b3:e1" srcip="x" dstip="x" proto="6" length="41" tos="0x00" prec="0x00" ttl="126" srcport="41769" dstport="80" tcpflags="ACK" 
2010:03:16-18:09:40 astaro-ext1-1 ulogd[29574]: id="2001" severity="info" sys="SecureNet" sub="packetfilter" name="Packet dropped" action="drop" fwrule="60002" seq="0" initf="eth0" outitf="eth1" dstmac="00:1a:8c:f0[:D]5:c0" srcmac="00:13:21:78:b3:e1" srcip="x" dstip="x" proto="6" length="52" tos="0x00" prec="0x00" ttl="126" srcport="42012" dstport="80" tcpflags="SYN" 



thanks!


This thread was automatically locked due to age.
Parents
  • Beginning in V7.500, there's a newer IPS engine with a larger ruleset.  During the beta, we saw a similar problem in the Packet Filter log and the solution was to disable one of the IPS rules.

    One more question: "dstip is internal public routable" means the IP of 'Internal (Address)', or another IP in 'Internal (Network)'?

    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • yes correct

    its another public routable (not private) ip in the dmz
Reply Children
No Data