Comments

3 comments

  • Avatar
    FirewallaSupportDesk

    Could you clarify what's the definition of rejecting and dropping? 

    Firewalla rules do block flows and you can find blocked flows on Box Main page. 

    0
    Comment actions Permalink
  • Avatar
    Thatdamnrainbow

    Dropping a packet - client doesn’t know what happened. It reached out for something, never heard back.
    Rejecting a packet - client is told no right away so it doesn’t keep asking the same thing over and over.

    0
    Comment actions Permalink
  • Avatar
    Dave

    Thatdamnrainbow is looking for ICMP Type 3 Code 13 response for UDP rule rejections and TCP RST for TCP rule rejections so that applications that support these responses can say they connection was refused. i.e. Chromium-based browsers would typically respond with a message saying "ERR_CONNECTION_REFUSED" or "ERR_CONNECTION_RESET" vs. traffic being silently dropped and leaving the application/user thinking there's a connection issue vs. a policy issue.

    0
    Comment actions Permalink

Please sign in to leave a comment.