>output DENY ipsec0 PROTO=1 172.35.55.8:8 192.168.0.1:0 L=84 S=0x00 I=6966 >F=0x0000 T=64 (#28) > >I found that port 8 is just a unassigned port and port 0 is a reserved port. >Does anyone out there have seen this error before. I don't know what firewall produced that log record (it would be better if folks identified the systems involved), but it is surely referring to protocol 1 (ICMP), type 8 (echo). (ICMP does not use ports.) As to why your firewall is blocking ICMP echo, I don't know. My IPSEC tunnels do not do that. Tony Rall - [To unsubscribe, send mail to [EMAIL PROTECTED] with "unsubscribe firewalls" in the body of the message.]
