On 2014-05-23 05:50, Paul Galati wrote:
My pfsense box is connected to the edge and has a public IP address,
so private and bogons are checked. It s the end user that appears to
be on an ISP that is using a private IP one hop upstream from his
personal router. When his packets reach the public internet, it
appears to come from 216.14.x.x.
My question is why IP 216.14.x.x is being caught by the bogon filter
even though it is not listed in CYMRU's database.
It might not hurt to check Diagnostics --> Tables to see if the IP is
listed there.
I had a weird scenario a few days ago, an alias previously contained a
mix of hostnames and IP addresses, several of which were removed.
A period of days later, I noticed that the table still included the IP
addresses resolved from the hostnames (but the IPs that were listed as
IPs had been removed). I verified that Aliases changes had been applied,
which they had.
I then added a new hostname to the list, it was added to the table,
while the existing IPs remained.
I can't reproduce it on demand, but it was a fairly small alias list so
I verified every entry by hand, the bad data was there (and seemed to
want to stay there), so it makes me wonder if other lists could be
subject to the same "phantom" entries?
--
Dave Warren
http://www.hireahit.com/
http://ca.linkedin.com/in/davejwarren
_______________________________________________
List mailing list
[email protected]
https://lists.pfsense.org/mailman/listinfo/list