Networking Forums

Networking Forums > Computer Networking > Windows Networking > Firewall Flags

Reply
Thread Tools Display Modes

Firewall Flags

 
 
MikeV06
Guest
Posts: n/a

 
      01-04-2006, 02:18 PM
Does anyone know where one can get detailed documentation about the W2003
Firewall, especially with regard to the flags? For example, in the log
entry below, I would like to be able to decode tcpflags, tcpsyn, tcpack,
and tcpwin.

Further, I do understand why the firewall drops so many packets that appear
to be at the end of a session? Besides appearing to be unnecessary, they
also add a lot of noise to the log when trying to examine them for more
important drops.

#Fields: date time action protocol src-ip dst-ip src-port dst-port size
tcpflags tcpsyn tcpack tcpwin icmptype icmpcode info path
2006-01-04 09:00:28 DROP TCP 216.86.167.206 192.168.1.95 443 2894 40 R
23975594 0 0 - - - RECEIVE
2006-01-04 09:01:17 DROP TCP 216.86.167.206 192.168.1.95 443 2905 40 FA
1447692800 4249055857 58400 - - - RECEIVE
2006-01-04 09:01:17 DROP TCP 216.86.167.206 192.168.1.95 443 2905 40 FA
1447692800 4249055858 58400 - - - RECEIVE
 
Reply With Quote
 
 
 
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
[HELP] flags [DF] always set lollolo Linux Networking 2 11-25-2011 02:55 PM
What do TCP Flags mean Rich Windows Networking 2 03-10-2009 06:45 PM
Problem with iptables tcp-flags Martin Schneider Linux Networking 2 04-29-2005 06:04 PM
Re : Problem with iptables tcp-flags Martin Schneider Linux Networking 0 04-29-2005 02:59 PM
about arp Flags message ... ÃÖ±Ô¶ô Linux Networking 1 05-11-2004 01:22 PM



1 2 3 4 5 6 7 8 9 10 11