Re: ping broadcast into forward chain?? (IN=eth0 OUT=eth0)!!

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Monday 2011-09-19 18:10, Julio A. Romero wrote:

>
> ----- Original Message ----- From: "Jan Engelhardt" <jengelh@xxxxxxxxxx>
> To: "Julio A. Romero" <julioarr@xxxxxxxxxxxx>
> Cc: <netfilter@xxxxxxxxxxxxxxx>
> Sent: Monday, September 19, 2011 11:55 AM
> Subject: Re: ping broadcast into forward chain?? (IN=eth0 OUT=eth0)!!
>
>
>> Bah, don't strip the CC, and don't top-post.
>>
>> On Monday 2011-09-19 17:43, Julio A. Romero wrote:
>>
>>> In the INPUT chain!!??
>>
>> No, why? It was not a broadcast packet. Your syslog itself says:
>> DST=10.6.15.246.
>
> but 10.6.15.246 is outside of my internal networks ??

Yes, which is why it goes to OUT=eth0.

> the packets don't go through the box or yes?!

Of course they do go through your box, otherwise it would not be able to 
log them.

> what happen if I remove the rule to log?

There would be no entry in syslog, obviously.

--
To unsubscribe from this list: send the line "unsubscribe netfilter" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at  http://vger.kernel.org/majordomo-info.html


[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux