Re: [Shorewall-users] ACK replies are dropped

2022-05-04 Thread Vieri Di Paola
On Wed, May 4, 2022 at 12:03 PM Tuomo Soini wrote: > > > May 4 08:04:22 fw1 kernel: FWGW:wan-lan1:DROP:IN=wan OUT=lan.1 > > MAC=ac:1f:6b:9b:85:06:30:85:a9:8e:b9:a0:08:00 SRC=23.200.66.154 > > DST=10.215.248.214 LEN=40 TOS=0x00 PREC=0x00 TTL=63 ID=38801 DF > > PROTO=TCP SPT=443 DPT=64710 WINDOW=12

Re: [Shorewall-users] ACK replies are dropped

2022-05-04 Thread Tuomo Soini
On Wed, 4 May 2022 11:22:39 +0200 Vieri Di Paola wrote: > Hi, > > I use these rules in the INVALID and NEW sections of the rules file: > > FIN(ACCEPT) { SOURCE=all, DEST=all } > RST(ACCEPT) { SOURCE=all, DEST=all } How about explaining which problem you try to solve? > according to a

[Shorewall-users] ACK replies are dropped

2022-05-04 Thread Vieri Di Paola
Hi, I use these rules in the INVALID and NEW sections of the rules file: FIN(ACCEPT) { SOURCE=all, DEST=all } RST(ACCEPT) { SOURCE=all, DEST=all } according to a previous mailing list post: https://sourceforge.net/p/shorewall/mailman/shorewall-users/thread/CABLYT9j-KvM0JEwxoZ3xppoL5yxZq