Hi,
I've been a shorewall user forever, but I've just noticed something I don't
understand.

I'm running shorewall-5.2.8 on fedora36 connected to a cable modem. On all
the other devices I have connected to the same cable modem, ifconfig shows
dropped packets:

enp4s0: flags=4163<UP,BROADCAST,RUNNING,MULTICAST>  mtu 1500
        inet 68.195.111.45  netmask 255.255.255.248  broadcast 68.195.193.47
        inet6 fe80::16da:e9ff:fe97:ab71  prefixlen 64  scopeid 0x20<link>
        inet6 ::16da:e9ff:fe97:ab71  prefixlen 64  scopeid 0x0<global>
        ether 14:da:e9:97:ab:71  txqueuelen 1000  (Ethernet)
        RX packets 12643957  bytes 15253760972 (14.2 GiB)
        RX errors 0  dropped 33177  overruns 0  frame 0
        TX packets 7622580  bytes 2355713021 (2.1 GiB)
        TX errors 0  dropped 0 overruns 0  carrier 0  collisions 0
        device interrupt 16  memory 0xdf200000-df220000

However, on the system running shorewall, there are no dropped packets. I
also noticed that there are no dropped packets when the interface is in
promisc mode, such as when using tcpdump.

Is that the case with shorewall? Does it somehow put the interface in
promisc mode? Is there perhaps another explanation as to why this one
system running shorewall doesn't drop packets, while all others do?

Thanks,
Alex
_______________________________________________
Shorewall-users mailing list
Shorewall-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to