Hi gang,
Are there any known issues when it comes to IPF keeping the state of ICMP traffic? The reason I'm asking is because I'm having some odd problems where only 1 ICMP packet finds its way back to other.server.
Here is the firewall script I'm using:
Probably needless to say, but remote.server resembles an IP address, and I'm 100% that this IP address is correct.
The moment I try to ping this server from remote.server only 1 ICMP packet in the sequence finds its way back:
(* the names and addresses have been changed to protect the innocent, namely me )
Usually only 1 packet finds its way back, sometimes even 2. But that's it.
I'm pretty confused right now, I hope one of you guys has an idea.
Are there any known issues when it comes to IPF keeping the state of ICMP traffic? The reason I'm asking is because I'm having some odd problems where only 1 ICMP packet finds its way back to other.server.
Here is the firewall script I'm using:
Code:
## Incoming traffic ##
# local loopback
pass in quick on lo0
# Temporary whitelist
pass in quick proto icmp from remote.server
## Log & block
#log in quick all
block in quick all
## Outgoing
pass out quick on lo0 all
pass out quick on vtnet0 all keep state
The moment I try to ping this server from remote.server only 1 ICMP packet in the sequence finds its way back:
Code:
[peter@smtp ~]$ ping server
PING server (xxx.xxx.xxx.xxx) 56(84) bytes of data.
64 bytes from server (xxx.xxx.xxx.xxx): icmp_seq=1 ttl=59 time=1.25 ms
Usually only 1 packet finds its way back, sometimes even 2. But that's it.
I'm pretty confused right now, I hope one of you guys has an idea.