Hi,
I was running 1.2.5 and have upgraded to 1.2.6-epa1.
I have not changed any configuration, but now my logs are filled with the following:
Aug 16 08:33:50 ferrari conntrack-tools[6386]: tcp 6 src=37.48.65.66 dst=202.137.243.17 sport=46330 dport=49371 src=192.168.0.5 dst=37.48.65.66 sport=49371 dport=46330 [ASSURED] Aug 16 08:33:50 ferrari conntrack-tools[6386]: tcp 6 src=192.168.0.104 dst=216.58.199.46 sport=59625 dport=443 src=216.58.199.46 dst=202.137.243.17 sport=443 dport=59625 [ASSURED] Aug 16 08:33:51 ferrari conntrack-tools[6386]: tcp 6 src=192.168.0.252 dst=192.168.10.2 sport=59104 dport=161 src=192.168.10.2 dst=192.168.0.252 sport=161 dport=59104 [ASSURED] Aug 16 08:33:51 ferrari conntrack-tools[6386]: tcp 6 src=192.168.0.252 dst=192.168.10.2 sport=59122 dport=161 src=192.168.10.2 dst=192.168.0.252 sport=161 dport=59122 [ASSURED] Aug 16 08:33:51 ferrari conntrack-tools[6386]: tcp 6 src=184.171.210.143 dst=202.137.243.17 sport=33325 dport=49371 src=192.168.0.5 dst=184.171.210.143 sport=49371 dport=33325 [ASSURED] Aug 16 08:33:52 ferrari conntrack-tools[6386]: tcp 6 src=192.168.0.106 dst=192.168.10.2 sport=43479 dport=993 src=192.168.10.2 dst=192.168.0.106 sport=993 dport=43479 [ASSURED] Aug 16 08:33:52 ferrari conntrack-tools[6386]: tcp 6 src=65.60.150.40 dst=202.137.243.17 sport=42888 dport=49371 src=192.168.0.5 dst=65.60.150.40 sport=49371 dport=42888 [ASSURED] Aug 16 08:33:52 ferrari conntrack-tools[6386]: tcp 6 src=192.168.0.5 dst=37.48.65.66 sport=49086 dport=80 src=37.48.65.66 dst=202.137.243.17 sport=80 dport=49086 [ASSURED] Aug 16 08:33:54 ferrari conntrack-tools[6386]: tcp 6 src=192.168.0.7 dst=34.206.114.4 sport=44826 dport=443 src=34.206.114.4 dst=202.137.243.17 sport=443 dport=44826 [ASSURED] Aug 16 08:33:54 ferrari conntrack-tools[6386]: tcp 6 src=192.168.0.5 dst=37.48.65.66 sport=49084 dport=80 src=37.48.65.66 dst=202.137.243.17 sport=80 dport=49084 [ASSURED] Aug 16 08:33:55 ferrari conntrack-tools[6386]: tcp 6 src=37.48.65.66 dst=202.137.243.17 sport=46328 dport=49371 src=192.168.0.5 dst=37.48.65.66 sport=49371 dport=46328 [ASSURED] Aug 16 08:33:57 ferrari conntrack-tools[6386]: tcp 6 src=192.168.0.106 dst=192.168.10.2 sport=43478 dport=993 src=192.168.10.2 dst=192.168.0.106 sport=993 dport=43478 [ASSURED] Aug 16 08:33:57 ferrari conntrack-tools[6386]: tcp 6 src=192.168.0.120 dst=216.58.199.46 sport=12526 dport=443 src=216.58.199.46 dst=202.137.243.17 sport=443 dport=12526 [ASSURED] Aug 16 08:33:57 ferrari conntrack-tools[6386]: tcp 6 src=192.168.0.5 dst=37.48.65.66 sport=49088 dport=80 src=37.48.65.66 dst=202.137.243.17 sport=80 dport=49088 [ASSURED]
I have two routers in my small network, they use VRRP and conntrack-sync between them so that on failover state can be maintained.
Config of my conntrack sync on my primary router (the one from which the logs above are collected)
[edit service conntrack-sync] tim@ferrari# show accept-protocol tcp,udp,icmp event-listen-queue-size 8 expect-sync all failover-mechanism { vrrp { sync-group failover-group } } interface eth1 { } mcast-group 225.0.0.50 sync-queue-size 8 [edit service conntrack-sync]
There are so many conntrack logs that "show log" is essentially useless unless I do " show log | no-match conntrack-tools"
Thanks!