[ previous ] [ next ] [ threads ]
 
 From:  =?ISO-8859-1?Q?Andr=E9_Marascalchi_Zenun?= <andre dot zenun at gmail dot com>
 To:  m0n0wall at lists dot m0n0 dot ch
 Subject:  Re: [m0n0wall] weird problem! -- [new information]
 Date:  Thu, 04 May 2006 15:43:17 -0300
hello folks!

I have search a little bit more, and found something that I think should 
not be happening! I have enabled the log in the firewall rules and I see 
that m0n0wall is dropping some packets! Here're the log output

X WAN       200.221.2.45, port 80       192.168.3.30, port 38064       TCP
X WAN       200.221.2.45, port 80       192.168.3.30, port 38064       TCP
X WAN       216.239.51.104, port 80     192.168.3.30, port 38241       TCP

This is just a sample, but I can see that the m0n0wall is dropping 
packets of a stablished TCP connection!
Here is other output from m0n0wall but with the option "Show raw filter 
logs" enabled!

15:41:02.906041 ste0 @0:11 b 200.221.2.45,80 -> 192.168.3.30,38248 PR 
tcp len 20 44 -AS IN
15:40:58.916418 ste0 @0:11 b 200.221.2.45,80 -> 192.168.3.30,38248 PR 
tcp len 20 44 -AS IN
15:40:57.912024 ste0 @0:11 b 200.221.2.45,80 -> 192.168.3.30,38248 PR 
tcp len 20 44 -AS IN
15:40:57.149358 ste0 @0:11 b 200.221.2.45,80 -> 192.168.3.30,38248 PR 
tcp len 20 44 -AS IN
15:40:48.104648 vlan0 @100:2 p 192.168.3.30,38248 -> 200.221.2.45,80 PR 
tcp len 20 60 -S K-S K-F IN

I don't know if this help...
Any ideas?!? Thanks!!




Aaron Cherman escreveu:
>
>> Well, I have reduced the MTU of the client and no change!! One thing
>> that I forgot to tell is that I can ping www.google.com and 
>> www.uol.com.br but I can't access it in the browser! :s
>
>
> You need to reduce the MTU on m0n0wall's interfaces - I would do all 
> m0n0wall interfaces just to be sure.
>
>
> Aaron
>
> ---------------------------------------------------------------------
> To unsubscribe, e-mail: m0n0wall dash unsubscribe at lists dot m0n0 dot ch
> For additional commands, e-mail: m0n0wall dash help at lists dot m0n0 dot ch
>
>


-- 

andre dot zenun at gmail dot com

Tel: +55 48 9115-5569

msn  ---------- andre dot zenun at ebaplc dot com
skype --------- andremzenun

><>