On Monday 2011-09-19 18:10, Julio A. Romero wrote: > > ----- Original Message ----- From: "Jan Engelhardt" <jengelh@xxxxxxxxxx> > To: "Julio A. Romero" <julioarr@xxxxxxxxxxxx> > Cc: <netfilter@xxxxxxxxxxxxxxx> > Sent: Monday, September 19, 2011 11:55 AM > Subject: Re: ping broadcast into forward chain?? (IN=eth0 OUT=eth0)!! > > >> Bah, don't strip the CC, and don't top-post. >> >> On Monday 2011-09-19 17:43, Julio A. Romero wrote: >> >>> In the INPUT chain!!?? >> >> No, why? It was not a broadcast packet. Your syslog itself says: >> DST=10.6.15.246. > > but 10.6.15.246 is outside of my internal networks ?? Yes, which is why it goes to OUT=eth0. > the packets don't go through the box or yes?! Of course they do go through your box, otherwise it would not be able to log them. > what happen if I remove the rule to log? There would be no entry in syslog, obviously. -- To unsubscribe from this list: send the line "unsubscribe netfilter" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html