This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Unknown reason why SKYPE gets blocked!

Hello, I'm trying to find the reason why skype cannot connect. Maybe there are and other services undiscovered but this is the ONE i'm having problem now. Also i tried and with SOCKS5 but with no success of connecting to skype network. The socks proxy works and i'm connecting ok but the result is the same.

Traffic gets dropped with the default Firewall rule 60001. This are the entries in the PF log:

ulogd[4321]: id="2001" severity="info" sys="SecureNet" sub="packetfilter" name="Packet dropped" action="drop" fwrule="60001" initf="eth1" srcmac="d6:61:2a:54:6b:96" dstmac="b2:57:57:49[:D]d:15" srcip="157.56.52.17" dstip="176.X.X.***" proto="6" length="40" tos="0x00" prec="0x00" ttl="53" srcport="443" dstport="52210" tcpflags="RST"

The source IP is from the range of Skype's network. The destination IP is my external WAN address.

There is nothing being blocked from IPS neither Web Filter or Application Control. I have tried everything that i could think of and here is my last resort for getting help before i format and fix the UTM from the start.

I have UTM 9 with firmware 9.106-17.


This thread was automatically locked due to age.
Parents
  • Hi, dgial, and welcome to the User BB!

    fwrule="60001" [...] srcport="443" dstport="52210" tcpflags="RST"

    This is a response from 157.x.y.17 that arrived after conntrack timed out on the connection.  I don't think reformatting will make any difference.  Do you see any errors if you check eth1 with ifconfig?  In any case, check #7 in https://community.sophos.com/products/unified-threat-management/astaroorg/f/51/t/22065.

    If that doesn't help, is this a home-use license or do you have a paid subscription?

    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Reply
  • Hi, dgial, and welcome to the User BB!

    fwrule="60001" [...] srcport="443" dstport="52210" tcpflags="RST"

    This is a response from 157.x.y.17 that arrived after conntrack timed out on the connection.  I don't think reformatting will make any difference.  Do you see any errors if you check eth1 with ifconfig?  In any case, check #7 in https://community.sophos.com/products/unified-threat-management/astaroorg/f/51/t/22065.

    If that doesn't help, is this a home-use license or do you have a paid subscription?

    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Children
No Data