After some research, it seems stopping IPS did the trick. It blocks all traffic due to this rule:
snort[7352]: id="2101" severity="warn" sys="SecureNet" sub="ips" name="Intrusion protection alert" action="drop" reason="ATTACK-RESPONSES id check returned root" group="500" srcip="192.87.102.107" dstip="x.x.x.x" proto="17" srcport="5072" dstport="59443" sid="498" class="Potentially Bad Traffic" priority="2" generator="1" msgid="0"
Where x.x.x.x is my WAN IP. So, this happens straight after IRC joins a channel.
I need to restart IPS before the IPv6 internet is up again. Perhaps a faulty IPS rule?
Thanks for the help.
TuxBrother
This thread was automatically locked due to age.