Jump to content
EduGeek EdSec 2026 is Go! 27th Oct in Derby! Join us for a day of EdTech security focused talks, networking, and an evening social ×

Recommended Posts

Posted

I'm receiving the following on my Firewall log, an entry every second. It's been happening since upgrading from Glamis to Inverness-8 approximately a week ago.

Time        Inbound interface    Outbound interface    Source IP    Destination IP      Protocol    Source Port    Destination Port    Rule                  Action
1:31:24 PM    Port 2 (EXTERNAL)    N/A                 (DA Server)    (SW Ext Iface)   TCP (6)     HTTPS (443)     53233           Bad external traffic       Reject

 

The weird thing is that traffic from the Direct Access server is being blocked at the *external* smoothwall interface, to which it shouldn't have a route except through the internal interface.

Any idea if this is typical, or if I have a bad rule somewhere? The bizarre thing is that from the look of my Helpdesk queue, Direct Access still works!

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...