Hi,
I noticed the following when using Astaro version 5.015
1) the logging option for the packet filtering rules will be reset whenever the "action" option is change for that specific rule. E.g Drop to allow
2) when applying a new packet filtering rules, existing TCP session will not be affected. E.g drop all ftp traffic, existing ftp session will still continue. Is there a way to reset the firewall state table?
3) When masquerading is applied for all internal network on the external interface..Eg PAT. Why does host from the external network stiill able to initial/establish direct connection to the internal network host? There is not SNAT/DNAT defined.
4) For SNAT/DNAT and masquerading rules, as there is no rules prority E,g numbers. Does Astaro firewall process the rules base on best match?
Sorry is there any thing/setting I miss out?
thxs
Eric
This thread was automatically locked due to age.