I run server on a separate (dmz) network inside the Astaro firewall, which has its own firewall installed. Since installing Astaro (2 days ago) I started getting martians originating from the Astaro firewall (see a snippet of my dmz firewall log below). Why is this happening - I have Network Security » Packet Filter » Spoof protection set to 'Strict', which is supposed to prevent this but it clearly isn't working! I also have the 'Validate packet length' option set as well.
A snipped from my dmz server firewall log:
kernel: martian source from , on dev eth0
kernel: ll header: ::08:00
kernel: martian source from , on dev eth0
kernel: ll header: ::08:00
kernel: martian source from , on dev eth0
kernel: ll header: ::08:00
kernel: martian source from , on dev eth0
kernel: ll header: ::08:00
kernel: martian source from , on dev eth0
kernel: ll header: ::08:00
kernel: martian source from , on dev eth0
kernel: ll header: ::08:00
kernel: martian source from , on dev eth0
kernel: ll header: ::08:00
kernel: martian source from , on dev eth0
kernel: ll header: ::08:00
kernel: martian source from , on dev eth0
kernel: ll header: ::08:00
kernel: martian source from , on dev eth0
kernel: ll header: ::08:00
This thread was automatically locked due to age.