[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Peculiar DENY from ipchains?



> > Anyone ever seen a DENY from IP chains like:
> > 
> >     Nov 29 19:44:14 john kernel: Packet log: output DENY ppp0
> >         PROTO=1 10.12.1.15:65535 63.81.184.67:65535
> >         L=21 S=0xD0 I=46379 F=0x0042 T=255 (#82)
> > 
> > where 10.12.1.15 is my ppp interface address?
> > 
> > What's going on with 65535? I'm sending it out, but don't know why.
> 
> according to /etc/protocols protocol number 1 is ICMP not sure why
> it specifies the port..for ICMP i think u can just ignore the port ..

This is not true, normally it would list the ICMP type, but it seems
didn't know what it was or something, because it picked the highest one
(that's for example also what it does if it doesn't know the protocol:
just look in /usr/share/doc/netbase/ipchains-HOWTO.txt.gz).



Reply to: