Hi,
I am getting strange behavior with v1.3. Here is the configuration:
Net1 --LAN-- FW1 --WAN-- Net2 Net1 --WAN-- FW2 --LAN-- Net3
* WAN/LAN rules on both firewalls are any > any * Net1 default route via FW1 to Net2 * FW1 has a static route to Net3 * Tick Advanced > Bypass firewall rules for traffic on the same interface option on both firewalls * Log all packets
When I ping from 10.0.0.1 on Net1 to 10.1.0.1 on Net3 it routes via FW1 as expected. Ping is successful, but the FW1 logs blocked ICMP packets from FW1 (10.0.0.254) to the 10.0.0.1. Example below:
Block LAN 10.0.0.254 10.0.0.1, type redirect/host ICMP
Yet the firewall also logs other packets as being passed. For example:
Pass LAN 10.0.0.2, port 138 10.0.0.255, port 138 UDP
Conclusion - It seems that some packets are being logged as blocked when they are not. (Perhaps just ICMP).
Any help would be appreciated.
Cheers, Matt
|