[ previous ] [ next ] [ threads ]
 From:  Manuel Kasper <mk at neon1 dot net>
 To:  "Christopher M. Iarocci" <iarocci at eastendsc dot com>
 Cc:  m0n0wall at lists dot m0n0 dot ch
 Subject:  Re: [m0n0wall] IPsec problem
 Date:  Mon, 1 Sep 2003 08:21:24 +0200 (CEST)
On Mon, 1 Sep 2003, Christopher M. Iarocci wrote:

> I'm going to assume you mean the firewall log entries.  Each time I try and
> send a ping to (LAN interface of other router) I get one of
> these lines for each ping I send.  (I'm also assuming each entry in the

OK, so it's the filter not letting those AH packets out. Now we need the
output of

ipfstat -hio

Well, send the entire output of /cgi-bin/status.cgi (remember to remove
passwords), we might need some more information anyway.

> firewall log entries shows a blocked or dropped packet.  Why would you
> want to display allowed packets?)

It would probably overflow the log just the slightest bit. ;)

- Manuel