We are using the latest version of ASL and are seeing packets being dropped due to spoofing issues. What is occuring is that the ASL firewall thinks that both the internal and external interfaces(mac address) are being spoofed by other internal networked machines. This seems really strange and something I have never seen before. The configuration is standard with some outbound packet filter rules along with HTTP and SMTP proxies. The internal network is NAT/MASQ to the outside. Also what happens is eventually the internal PC's will be completly denied from access to the ASL or the internet. Once the network card has been disabled on the PC and then enabled traffic will pass along for a while and then it will be denied again. The PC's are Windows XP. The Netbios and SMB broadcasts are the not the issue however.
Any suggestions would be appreciated!
This thread was automatically locked due to age.