... and can't get up!

[Sat Jan 12 11:56:22 2019] FORWARD REJECT IN=eth0 OUT=eth0
MAC=00:1f:5b:23:51:f2:f6:b5:2f:a2:db:8e:08:00 SRC=5.158.83.30
DST=10.1.1.30 LEN=48 TOS=0x00 PREC=0x00 TTL=42 ID=47070 DF PROTO=TCP
SPT=60896 DPT=443 WINDOW=29200 RES=0x00 SYN URGP=0 OPT (020405B401030307)
[Sat Jan 12 11:56:22 2019] FORWARD REJECT IN=eth0 OUT=eth0
MAC=00:1f:5b:23:51:f2:f6:b5:2f:a2:db:8e:23:00 SRC=5.158.83.30
DST=10.1.1.30 LEN=48 TOS=0x00 PREC=0x00 TTL=44 ID=4293 DF PROTO=TCP
SPT=60898 DPT=443 WINDOW=29200 RES=0x00 SYN URGP=0 OPT (020405B401030307)
[Sat Jan 12 11:56:23 2019] FORWARD REJECT IN=eth0 OUT=eth0
MAC=00:1f:5b:23:51:f2:f6:b5:2f:a2:db:8e:23:00 SRC=5.158.83.30
DST=10.1.1.30 LEN=48 TOS=0x00 PREC=0x00 TTL=44 ID=47998 DF PROTO=TCP
SPT=60900 DPT=443 WINDOW=29200 RES=0x00 SYN URGP=0 OPT (020405B401030307)
[Sat Jan 12 11:56:23 2019] FORWARD REJECT IN=eth0 OUT=eth0
MAC=00:1f:5b:23:51:f2:f6:b5:2f:a2:db:8e:23:00 SRC=5.158.83.30
DST=10.1.1.30 LEN=48 TOS=0x00 PREC=0x00 TTL=42 ID=4884 DF PROTO=TCP
SPT=60902 DPT=443 WINDOW=29200 RES=0x00 SYN URGP=0 OPT (020405B401030307)
[Sat Jan 12 11:56:24 2019] FORWARD REJECT IN=eth0 OUT=eth0
MAC=00:1f:5b:23:51:f2:f6:b5:2f:a2:db:8e:23:00 SRC=5.158.83.30
DST=10.1.1.30 LEN=48 TOS=0x00 PREC=0x00 TTL=42 ID=39976 DF PROTO=TCP
SPT=60904 DPT=443 WINDOW=29200 RES=0x00 SYN URGP=0 OPT (020405B401030307)
[Sat Jan 12 11:56:24 2019] FORWARD REJECT IN=eth0 OUT=eth0
MAC=00:1f:5b:23:51:f2:f6:b5:2f:a2:db:8e:23:00 SRC=5.158.83.30
DST=10.1.1.30 LEN=48 TOS=0x00 PREC=0x00 TTL=42 ID=11532 DF PROTO=TCP
SPT=60906 DPT=443 WINDOW=29200 RES=0x00 SYN URGP=0 OPT (020405B401030307)

Forwarding is on in shorewall.conf and sysctl, and in rules:

Web(DNAT)       net             dmz:10.1.30.30   -       -       -      
-       3/sec:10
Web(DNAT)       local           dmz:10.1.30.30   -       -       -      
&eth0

shorewall_dump sent to Tom.



_______________________________________________
Shorewall-users mailing list
Shorewall-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to