Start a Conversation

Unsolved

T

1 Rookie

 • 

1 Message

71

September 3rd, 2024 09:20

SCG leaking docker internal networks

Recently I checked logs from a firewall behind my SCG lives and found some drops of packet originating from a docker internal network. I don't think it should happen. Is this a known bug or something? 


The destination address does not resolve in DNS and belongs to Dell ASN  3614.

An example:

INSPECT-OUT forward: in:mgmt out:uplink, connection-state:invalid src-mac 00:50:56:a4:19:c0, proto TCP (ACK,FIN), 172.18.0.2:38100->128.221.236.246:443, len 52

Moderator

 • 

9.4K Posts

September 3rd, 2024 18:52

Tommydpl,

 

That doesn't appear to be an issue, the reason being is that you can't contain it to just inside the Appliance so that it's possible for it to go external.

 

Let me know if this helps.

 

No Events found!

Top