Re: Mysterious packets with stateful ipfw+nat

2006-12-02 Thread James Halstead
1000 and be diverted through NAT for processing)? James Halstead wrote: Ok, this has been driving me nuts for a while. I recently noticed that my 5.4-RELEASE firewall was having a problem with packet leakage. I am seeing the occasional packet on the outside interface with an internal src ip. I put

Re: Mysterious packets with stateful ipfw+nat

2006-12-02 Thread James Halstead
Luigi Rizzo wrote: On Sat, Dec 02, 2006 at 09:00:13PM +0100, Max Laier wrote: On Saturday 02 December 2006 19:00, James Halstead wrote: Ok, the obvious part that I think I was missing while it was late, was that these must be keep-alive packets generated by the firewall as the dynamic rules

Mysterious packets with stateful ipfw+nat

2006-12-01 Thread James Halstead
Ok, this has been driving me nuts for a while. I recently noticed that my 5.4-RELEASE firewall was having a problem with packet leakage. I am seeing the occasional packet on the outside interface with an internal src ip. I put a hub between my firewall and cable modem and verified that the