This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Unrecognized firewall log output

Dear,
      I want to understand the attached output of the firewall log when I try to update Ubuntu 11.10 and this update related to Google Chrome.

Thanks,
Mostafa Aly


This thread was automatically locked due to age.
Parents
  • This demonstrates why it's always important to post the full log lines instead of the Live Log.  fwrule="60003" means this was dropped from the OUTPUT chain.  The fact that there's no in-interface (initf) indicates the packet comes from an Astaro proxy, and srcport="80" indicates that it's the http/s proxy.  There's no good reason for that to happen, so there must be a misconfiguration somewhere.

    Can you confirm that you have only a single Astaro NIC connected to your internal network?  If that's not the problem, then you probably need to go through your Host/Network definitions and set them all to 'Interface: >' instead of to a specific interface.

    Did any of that help?

    Cheers - Bob
    Please I want something that explain to me all log output parameter like fwrule,id,mark,app

    https://support.astaro.com/support/index.php/astaro_logfile_guide
    https://support.astaro.com/support/index.php/Packetfilter_logfiles
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Reply
  • This demonstrates why it's always important to post the full log lines instead of the Live Log.  fwrule="60003" means this was dropped from the OUTPUT chain.  The fact that there's no in-interface (initf) indicates the packet comes from an Astaro proxy, and srcport="80" indicates that it's the http/s proxy.  There's no good reason for that to happen, so there must be a misconfiguration somewhere.

    Can you confirm that you have only a single Astaro NIC connected to your internal network?  If that's not the problem, then you probably need to go through your Host/Network definitions and set them all to 'Interface: >' instead of to a specific interface.

    Did any of that help?

    Cheers - Bob
    Please I want something that explain to me all log output parameter like fwrule,id,mark,app

    https://support.astaro.com/support/index.php/astaro_logfile_guide
    https://support.astaro.com/support/index.php/Packetfilter_logfiles
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Children
No Data