[Firehol-support] Re: DHCP Log Messages - Please HELP!

Daniel Pittman daniel at rimspace.net
Wed Aug 24 07:22:24 BST 2005


cougar <c0ugar7i8 at comcast.net> writes:
> On Aug 23, 2005, at 23:43 PM, Daniel Pittman wrote:
>> cougar <c0ugar7i8 at comcast.net> writes:
>>>> cougar <c0ugar7i8 at comcast.net> writes:

[...]

> I had 'client all accept', shouldn't that take care of the 'client  
> dhcp accept'?

Yes, probably. :)

> I added the 'server dhcp drop' like you suggested and now I'm  
> receiving these...
>
> Aug 24 00:58:39 mercury NEW TCP w/o SYN: IN=eth0 OUT=eth1  
> MAC=00:03:47:77:3d:25:00:03:93:6d:97:d4:08:00  SRC=192.168.1.2  
> DST=205.206.113.59 LEN=40 TOS=00 PREC=0x00 TTL=63 ID=58867 CE  
> PROTO=TCP SPT=57191 DPT=6346 SEQ=1555253119 ACK=1293108379  
> WINDOW=65535 ACK URGP=0

If you just restarted your firewall, it must have forgotten the
connections in progress.  These are TCP packets that are part of a
running connection, but that conntrack doesn't recognise.

They /should/ go away shortly, and the bittorrent system (if I don't
miss my guess) should reconnect to those peers for you.

     Daniel






More information about the Firehol-support mailing list