>output DENY ipsec0 PROTO=1 172.35.55.8:8 192.168.0.1:0 L=84 S=0x00 I=6966
>F=0x0000 T=64 (#28)
>
>I found that port 8 is just a unassigned port and port 0 is a reserved
port.
>Does anyone out there have seen this error before.

I don't know what firewall produced that log record (it would be better if
folks identified the systems involved), but it is surely referring to
protocol 1 (ICMP), type 8 (echo).  (ICMP does not use ports.)

As to why your firewall is blocking ICMP echo, I don't know.  My IPSEC
tunnels do not do that.

Tony Rall

-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]

Reply via email to