Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Arkadiusz
New Contributor

Error Message replay packet(allow_err), drop

Good afternoon. Browsing the logs encountered on this entry Message replay packet(allow_err), drop
Sub Type	other	
 ID	7
 Virtual Domain	root	
 Src	86.126.227.193
 Src Name	86.126.227.193	
 Src Port	443
 Dst	195.xxx.xxx.xxx	
 Dst Name	195.xxx.xxx.xxx	
 Dst Port	55900	
 Service	55900/tcp
 Protocol	6	
 IM and P2P Application	N/A
 Duration	466	
 Rule	15
 Policy ID	15	
 Sent	0 B
 Received	0 B	
 VPN	N/A
 Src Interface	VLAN20_BIURO	
 Dst Interface	wan1
 Serial Number	14408400	Status	
 Message	replay packet(allow_err), drop
Record 195.xxx.xxx.xxx is my public IP Where is the problem and how to fix it
1 REPLY 1
Rick_H
New Contributor III

Are you seeing any other symptoms/problems than this entry in your logs? How often are you seeing this particular entry? The reason I ask is that this may be normal if you aren' t seeing problems with your traffic in general and this error is sparse. When using TCP (SSL uses TCP) a source can " replay" a packet if it thinks one was dropped or lost in transit. If the original packet actually did reach the destination successfully then the retransmit would appear as a " replay" and would be correctly dropped by the firewall.
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors