This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Astaro Flow Classifier sub-system broken? Filters DNS traffic

Since 23rd February we do face this problem:

The Astaro Flow Classifier blocks DNS traffic (zone transfers between slave and master e.g.)


Jan 27 12:37:05 FirewallIP 2011:01:27-12:37:05 ulogd[3513]: id="2019" severity="info" sys="SecureNet" sub="packetfilter" name="AFC Block" action="drop" fwrule="60204" seq="0" outitf="eth0" srcip="192.168.24.207" dstip="172.16.222.6" proto="17" length="62" tos="0x00" prec="0x00" ttl="62" srcport="53" dstport="53" 

fwrule 60204 should be edonkey ... wow the download kids now use DNS as P2P :-)

This results in messages like this:

Jan 27 19:25:56 linuxserver named[17084]: transfer of '24.168.192.in-addr.arpa/IN' from 172.16.222.6#53: failed while receiving responses: end of file


I had to add the DNS server to the exclusion list, but this shouldn't be the solution, it did work before

----
ASG
Firmware version:  7.509 
Pattern version:  21182


This thread was automatically locked due to age.