Author Topic: eBox-firewall blocking broadcast packets?  (Read 2740 times)

RoboJ1M

  • Zen Monk
  • **
  • Posts: 51
  • Karma: +0/-0
    • View Profile
eBox-firewall blocking broadcast packets?
« on: June 02, 2008, 03:35:59 pm »
Hi,

I'm getting billions of these SMB broadcast packets being logged as blocked in /var/log/syslog

Code: [Select]
Jun  2 14:24:10 router-internal kernel: [104374.750926] ebox-firewall IN=eth1 OUT= MAC=ff:ff:ff:ff:ff:ff:00:0d:56:ed:82:18:08:00 SRC=192.168.27.67 DST=192.168.27.255 LEN=229 TOS=0x00 PREC=0x00 TTL=128 ID=15730 PROTO=UDP SPT=138 DPT=138 LEN=209
What's that all about then?  ???

Thanks,

Jim.

javi

  • Zen Hero
  • *****
  • Posts: 1042
  • Karma: +0/-0
    • View Profile
Re: eBox-firewall blocking broadcast packets?
« Reply #1 on: June 02, 2008, 03:56:31 pm »
Do you have a windows machine or another linux machine running samba on your LAN?

eBox is dropping them.

Actually, they are not billions. 50 per minute at most.

You can accept those packages, disable the fireall logs, or decrease the number of dropped logged packets per minute  in /etc/ebox/80firewall.conf