* [B.A.T.M.A.N.] Understanding MAC-Adresses in iptables-Logs
@ 2015-01-25 13:24 Jan Lühr
2015-02-18 8:54 ` Marek Lindner
0 siblings, 1 reply; 2+ messages in thread
From: Jan Lühr @ 2015-01-25 13:24 UTC (permalink / raw)
To: The list for a Better Approach To Mobile Ad-hoc Networking
Hello folks,
there appears to be some misconfiguration in our network. A gateway is
blocking unknown ip-addresses:
[658047.514011] FORWARD DROPPEDIN=bat0 OUT=backbone
MAC=3a:81:5b:64:fa:32:08:fc:88:9b:8a:60:08:00:45:00:00:4f:6c:b1:40:00:3f:06:b8:8e:0a:a6
SRC=10.166.28.69 DST=173.194.65.188 LEN=79 TOS=0x00 PREC=0x00 TTL=63
ID=27825 DF PROTO=TCP SPT=45173 DPT=5228 WINDOW=9131 RES=0x00 ACK PSH
URGP=0
[658047.519455] FORWARD DROPPEDIN=bat0 OUT=backbone
MAC=3a:81:5b:64:fa:32:08:fc:88:9b:8a:60:08:00:45:00:00:34:6c:b2:40:00:3f:06:b8:a8:0a:a6
SRC=10.166.28.69 DST=173.194.65.188 LEN=52 TOS=0x00 PREC=0x00 TTL=63
ID=27826 DF PROTO=TCP SPT=45173 DPT=5228 WINDOW=9131 RES=0x00 ACK FIN
URGP=0
I'm somewhat confused by the mac-address here - it's very long.
Can I somehow derive, which originator or client is propagating or using
this address?
Greetz, Jan
^ permalink raw reply [flat|nested] 2+ messages in thread
* Re: [B.A.T.M.A.N.] Understanding MAC-Adresses in iptables-Logs
2015-01-25 13:24 [B.A.T.M.A.N.] Understanding MAC-Adresses in iptables-Logs Jan Lühr
@ 2015-02-18 8:54 ` Marek Lindner
0 siblings, 0 replies; 2+ messages in thread
From: Marek Lindner @ 2015-02-18 8:54 UTC (permalink / raw)
To: The list for a Better Approach To Mobile Ad-hoc Networking
[-- Attachment #1: Type: text/plain, Size: 1055 bytes --]
On Sunday, January 25, 2015 14:24:17 Jan Lühr wrote:
> there appears to be some misconfiguration in our network. A gateway is
> blocking unknown ip-addresses:
>
> [658047.514011] FORWARD DROPPEDIN=bat0 OUT=backbone
> MAC=3a:81:5b:64:fa:32:08:fc:88:9b:8a:60:08:00:45:00:00:4f:6c:b1:40:00:3f:06:
> b8:8e:0a:a6 SRC=10.166.28.69 DST=173.194.65.188 LEN=79 TOS=0x00 PREC=0x00
> TTL=63 ID=27825 DF PROTO=TCP SPT=45173 DPT=5228 WINDOW=9131 RES=0x00 ACK
> PSH URGP=0
> [658047.519455] FORWARD DROPPEDIN=bat0 OUT=backbone
> MAC=3a:81:5b:64:fa:32:08:fc:88:9b:8a:60:08:00:45:00:00:34:6c:b2:40:00:3f:06:
> b8:a8:0a:a6 SRC=10.166.28.69 DST=173.194.65.188 LEN=52 TOS=0x00 PREC=0x00
> TTL=63 ID=27826 DF PROTO=TCP SPT=45173 DPT=5228 WINDOW=9131 RES=0x00 ACK
> FIN URGP=0
>
> I'm somewhat confused by the mac-address here - it's very long.
> Can I somehow derive, which originator or client is propagating or using
> this address?
If you posted the iptables rules with which you generate these logs we might
be able to help you.
Cheers,
Marek
[-- Attachment #2: This is a digitally signed message part. --]
[-- Type: application/pgp-signature, Size: 473 bytes --]
^ permalink raw reply [flat|nested] 2+ messages in thread
end of thread, other threads:[~2015-02-18 8:54 UTC | newest]
Thread overview: 2+ messages (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2015-01-25 13:24 [B.A.T.M.A.N.] Understanding MAC-Adresses in iptables-Logs Jan Lühr
2015-02-18 8:54 ` Marek Lindner
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).