Hi community.
i am a home user, having problems with DNAT. it was working in previous versions... i am succesfully using WAF for web services (https), but not DNAT. well, they work as expected when activated, but next day they are not.
problem is like this, this is my accessing from outside:
2019:04:17-10:58:53 home ulogd[4923]: id="2000" severity="info" sys="SecureNet" sub="packetfilter" name="Packet logged" action="log" fwrule="62003" initf="ppp1" srcip="myexternalipelsewhere" dstip="myhomeip" proto="6" length="52" tos="0x00" prec="0x20" ttl="123" srcport="10401" dstport="3389" tcpflags="SYN"
2019:04:17-10:58:53 home ulogd[4923]: id="2001" severity="info" sys="SecureNet" sub="packetfilter" name="Packet dropped" action="drop" fwrule="60002" initf="ppp1" outitf="eth1.10" srcmac="00:01:2e:6e:b0:09" srcip="myexternalipelsewhere" dstip="mylanip" proto="6" length="52" tos="0x00" prec="0x20" ttl="122" srcport="10401" dstport="3389" tcpflags="SYN"
after i restart DNAT rule it is like this:
2019:04:17-11:04:10 home ulogd[4923]: id="2000" severity="info" sys="SecureNet" sub="packetfilter" name="Packet logged" action="log" fwrule="62003" initf="ppp1" srcip="myexternalipelsewhere" dstip="myhomeip" proto="6" length="52" tos="0x00" prec="0x20" ttl="123" srcport="10800" dstport="3389" tcpflags="SYN"
i really did only turned off the DNAT and then reenabled. it works even after system restart...??
ofcourse there are country based drops that are ok:
2019:04:17-11:08:08 home ulogd[4923]: id="2000" severity="info" sys="SecureNet" sub="packetfilter" name="Packet logged" action="log" fwrule="62003" initf="ppp1" srcip="188.246.224.47" dstip="myhomeip" proto="6" length="40" tos="0x08" prec="0x00" ttl="242" srcport="60000" dstport="3389" tcpflags="SYN" 2019:04:17-11:08:08 home ulogd[4923]: id="2021" severity="info" sys="SecureNet" sub="packetfilter" name="Packet dropped (GEOIP)" action="drop" fwrule="60019" initf="ppp1" outitf="eth1.10" srcmac="00:01:2e:6e:b0:09" srcip="188.246.224.47" dstip="mylanip" proto="6" length="40" tos="0x08" prec="0x00" ttl="241" srcport="60000" dstport="3389" tcpflags="SYN"
WAF for now works as expected.
i did have some problems with dyndns and wan interfaces ip; was solved with system reset, i hope it does not rewoke.
another thing for this version; using web admin, after time out it does not logout, it just caches objects (just like before initial login) infinite. (using chrome)
thank you for any suggestions.
UTM active services:
Firewall is active with 28 rules
Status: Enabled Intrusion Prevention is active with 1660 of 35029 patterns
Status: Enabled Web Filtering is active, 22053 requests served today
Status: Disabled Network Visibility is inactive
Status: Disabled SMTP Proxy is inactive
Status: Enabled POP3 Proxy is active, 0 emails processed, 0 emails blocked
Status: Disabled RED is inactive
Status: Disabled Wireless Protection is inactive
Status: Disabled Endpoint Protection is inactive
Status: Disabled Site-to-Site VPN is inactive
Status: Enabled Remote Access is active with 0 online users
Status: Enabled Web Application Firewall is active, 36 requests served today
Status: Disabled Sophos UTM Manager is not configured
Status: Disabled Sophos Mobile Control is inactive
Status: Disabled HA/Cluster is inactive
Status: Enabled Antivirus is active for protocols HTTP/S, POP3
Status: Enabled Antispam is active for protocols POP3
Status: Enabled Antispyware is active
This thread was automatically locked due to age.