Re: [Shorewall-users] martian source and net_ratelimit

2019-11-07 Thread Vieri Di Paola
Hi, On Tue, Nov 5, 2019 at 6:05 PM Tom Eastep wrote: > > > Do you mean I should use rpfilter in the "interfaces" file (I've never > > used routefilter)? Which interface? The one I'm seeing the martian > > source messages for? Incidentally, adding the rpfilter option to > > enp8s5 yields a 0 in /p

Re: [Shorewall-users] martian source and net_ratelimit

2019-11-05 Thread Tom Eastep
On 11/5/19 5:50 AM, Vieri Di Paola wrote: > On Mon, Nov 4, 2019 at 5:44 PM Tom Eastep wrote: >> >> Never use the routefilter/logmartians interface options with policy >> routing; use rpfilter instead. > > Do you mean I should use rpfilter in the "interfaces" file (I've never > used routefilter)?

Re: [Shorewall-users] martian source and net_ratelimit

2019-11-05 Thread Vieri Di Paola
On Mon, Nov 4, 2019 at 5:44 PM Tom Eastep wrote: > > Never use the routefilter/logmartians interface options with policy > routing; use rpfilter instead. Do you mean I should use rpfilter in the "interfaces" file (I've never used routefilter)? Which interface? The one I'm seeing the martian sourc

Re: [Shorewall-users] martian source and net_ratelimit

2019-11-04 Thread Tom Eastep
On 11/4/19 2:44 AM, Vieri Di Paola wrote: > Hi, > > I see something like this in syslog every 5 seconds: > > Nov 4 11:16:05 inf-fw2 kernel: net_ratelimit: 102 callbacks suppressed > Nov 4 11:16:05 inf-fw2 kernel: IPv4: martian source 10.215.147.139 > from 10.215.144.91, on dev enp8s5 > Nov 4 1

[Shorewall-users] martian source and net_ratelimit

2019-11-04 Thread Vieri Di Paola
Hi, I see something like this in syslog every 5 seconds: Nov 4 11:16:05 inf-fw2 kernel: net_ratelimit: 102 callbacks suppressed Nov 4 11:16:05 inf-fw2 kernel: IPv4: martian source 10.215.147.139 from 10.215.144.91, on dev enp8s5 Nov 4 11:16:05 inf-fw2 kernel: ll header: : ff ff ff ff f