Re: Firewall Sending Resets(was Troubleshooting Netfilter Firewall (performance issues))

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Fri, 2005-11-04 at 23:01 +0100, Jozsef Kadlecsik wrote:
> On Fri, 4 Nov 2005, Harrison, James wrote:
> 
> > We have determined, that during large(50-100MB) file transfers the
> > firewall is spuriously sending a tcp reset to both server and client.
> [...]
> 
> netfilter sends RST if it was configured to do so by using the REJECT
> target.
> 
> No vanilla netfilter sends RST to client and server, in any setup.
> 
> Best regards,
> Jozsef
> -
> E-mail  : kadlec@xxxxxxxxxxxxxxxxx, kadlec@xxxxxxxxxxxxxxx
> PGP key : http://www.kfki.hu/~kadlec/pgp_public_key.txt
> Address : KFKI Research Institute for Particle and Nuclear Physics
>           H-1525 Budapest 114, POB. 49, Hungary

I understand, but the file transfer is initiated, begins, and can and
will run for a period of time, then out of the blue it fires the RST.

Why?

-- 
James Harrison RHCE
Manager, Information Security


[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux