Article 5BYHH Help newbie understand inbound packets

Help newbie understand inbound packets

by
bulgin
from LinuxQuestions.org on (#5BYHH)
Hello, I'm curious why my local computer sitting behind a router firewall, is even seeing the following which is being blocked by UFW. In my estimation my local computer shouldn't even be seeing this traffic travering the router inbound to my computer. Below is cat'ing syslog. Seems that way to me:

Dec 21 22:41:34 computer kernel: [28146.425096] [UFW BLOCK] IN=enxxaxaxaxaxaxax OUT= MAC=02:e0:4d:02:07:4d:d0:17:c2:59:02:e0:4d:02 SRC=151.xxx.117.xxx DST=192.168.xx.xxx LEN=103 TOS=0x00 PREC=0x00 TTL=53 ID=13162 DF PROTO=TCP SPT=443 DPT=44278 WINDOW=84 RES=0x00 ACK PSH FIN URGP=0
Dec 21 22:41:38 computer kernel: [28150.xxx640] [UFW BLOCK] IN=enxxaxaxaxaxaxax OUT= MAC=02:e0:4d:02:07:4d:d0:17:c2:59:02:e0:4d:02 SRC=151.xxx.37.xxx DST=192.168.xx.xxx LEN=110 TOS=0x00 PREC=0x00 TTL=56 ID=51459 DF PROTO=TCP SPT=443 DPT=50518 WINDOW=304 RES=0x00 ACK PSH FIN URGP=0
Dec 21 22:41:42 computer kernel: [28154.101814] [UFW BLOCK] IN=enxxaxaxaxaxaxax OUT= MAC=02:e0:4d:02:07:4d:d0:17:c2:59:02:e0:4d:02 SRC=151.xxx.117.xxx DST=192.168.xx.xxx LEN=103 TOS=0x00 PREC=0x00 TTL=53 ID=13163 DF PROTO=TCP SPT=443 DPT=44278 WINDOW=84 RES=0x00 ACK PSH FIN URGP=0
Dec 21 22:41:45 computer kernel: [28157.332609] [UFW BLOCK] IN=enxxaxaxaxaxaxax OUT= MAC=02:e0:4d:02:07:4d:d0:17:c2:59:02:e0:4d:02 SRC=151.xxx.37.xxx DST=192.168.xx.xxx LEN=110 TOS=0x00 PREC=0x00 TTL=56 ID=51460 DF PROTO=TCP SPT=443 DPT=50518 WINDOW=304 RES=0x00 ACK PSH FIN URGP=0
Dec 21 22:41:50 computer kernel: [28161.969318] [UFW BLOCK] IN=enxxaxaxaxaxaxax OUT= MAC=02:e0:4d:02:07:4d:d0:17:c2:59:02:e0:4d:02 SRC=151.xxx.117.xxx DST=192.168.xx.xxx LEN=110 TOS=0x00 PREC=0x00 TTL=53 ID=1958 DF PROTO=TCP SPT=443 DPT=54718 WINDOW=83 RES=0x00 ACK PSH URGP=0
Dec 21 22:41:50 computer kernel: [28162.117234] [UFW BLOCK] IN=enxxaxaxaxaxaxax OUT= MAC=02:e0:4d:02:07:4d:d0:17:c2:59:02:e0:4d:02 SRC=151.xxx.117.xxx DST=192.168.xx.xxx LEN=52 TOS=0x00 PREC=0x00 TTL=53 ID=1960 DF PROTO=TCP SPT=443 DPT=54718 WINDOW=83 RES=0x00 ACK FIN URGP=0
Dec 21 22:41:50 computer kernel: [28162.388131] [UFW BLOCK] IN=enxxaxaxaxaxaxax OUT= MAC=02:e0:4d:02:07:4d:d0:17:c2:59:02:e0:4d:02 SRC=151.xxx.117.xxx DST=192.168.xx.xxx LEN=110 TOS=0x00 PREC=0x00 TTL=53 ID=1961 DF PROTO=TCP SPT=443 DPT=54718 WINDOW=83 RES=0x00 ACK PSH FIN URGP=0
Dec 21 22:41:51 computer kernel: [28162.932039] [UFW BLOCK] IN=enxxaxaxaxaxaxax OUT= MAC=02:e0:4d:02:07:4d:d0:17:c2:59:02:e0:4d:02 SRC=151.xxx.117.xxx DST=192.168.xx.xxx LEN=110 TOS=0x00 PREC=0x00 TTL=53 ID=1962 DF PROTO=TCP SPT=443 DPT=54718 WINDOW=83 RES=0x00 ACK PSH FIN URGP=0
Dec 21 22:41:51 computer kernel: [28162.970633] [UFW BLOCK] IN=enxxaxaxaxaxaxax OUT= MAC=02:e0:4d:02:07:4d:d0:17:c2:59:02:e0:4d:02 SRC=151.xxx.37.xxx DST=192.168.xx.xxx LEN=110 TOS=0x00 PREC=0x00 TTL=56 ID=20773 DF PROTO=TCP SPT=443 DPT=50538 WINDOW=135 RES=0x00 ACK PSH URGP=0
Dec 21 22:41:51 computer kernel: [28162.971207] [UFW BLOCK] IN=enxxaxaxaxaxaxax OUT= MAC=02:e0:4d:02:07:4d:d0:17:c2:59:02:e0:4d:02 SRC=151.xxx.37.xxx DST=192.168.xx.xxx LEN=52 TOS=0x00 PREC=0x00 TTL=56 ID=20774 DF PROTO=TCP SPT=443 DPT=50538 WINDOW=135 RES=0x00 ACK FIN URGP=0
Dec 21 22:41:51 computer kernel: [28163.032605] [UFW BLOCK] IN=enxxaxaxaxaxaxax OUT= MAC=02:e0:4d:02:07:4d:d0:17:c2:59:02:e0:4d:02 SRC=151.xxx.37.xxx DST=192.168.xx.xxx LEN=52 TOS=0x00 PREC=0x00 TTL=56 ID=20775 DF PROTO=TCP SPT=443 DPT=50538 WINDOW=135 RES=0x00 ACK FIN URGP=0
Dec 21 22:41:52 computer kernel: [28163.977944] [UFW BLOCK] IN=enxxaxaxaxaxaxax OUT= MAC=02:e0:4d:02:07:4d:d0:17:c2:59:02:e0:4d:02 SRC=151.xxx.117.xxx DST=192.168.xx.xxx LEN=110 TOS=0x00 PREC=0x00 TTL=53 ID=37258 DF PROTO=TCP SPT=443 DPT=54740 WINDOW=83 RES=0x00 ACK PSH URGP=0
Dec 21 22:41:54 computer kernel: [28166.507524] [UFW BLOCK] IN=enxxaxaxaxaxaxax OUT= MAC=02:e0:4d:02:07:4d:d0:17:c2:59:02:e0:4d:02 SRC=151.xxx.37.xxx DST=192.168.xx.xxx LEN=110 TOS=0x08 PREC=0x00 TTL=51 ID=20779 DF PROTO=TCP SPT=443 DPT=50538 WINDOW=135 RES=0x00 ACK PSH FIN URGP=0
Dec 21 22:41:56 computer kernel: [28167.966419] [UFW BLOCK] IN=enxxaxaxaxaxaxax OUT= MAC=02:e0:4d:02:07:4d:d0:17:c2:59:02:e0:4d:02 SRC=151.xxx.37.xxx DST=192.168.xx.xxx LEN=103 TOS=0x00 PREC=0x00 TTL=56 ID=12451 DF PROTO=TCP SPT=443 DPT=39076 WINDOW=142 RES=0x00 ACK PSH URGP=0
Dec 21 22:41:57 computer kernel: [28168.981038] [UFW BLOCK] IN=enxxaxaxaxaxaxax OUT= MAC=02:e0:4d:02:07:4d:d0:17:c2:59:02:e0:4d:02 SRC=151.xxx.117.xxx DST=192.168.xx.xxx LEN=103 TOS=0x00 PREC=0x00 TTL=53 ID=61014 DF PROTO=TCP SPT=443 DPT=44276 WINDOW=83 RES=0x00 ACK PSH URGP=0
Dec 21 22:42:01 computer kernel: [28172.949926] [UFW BLOCK] IN=enxxaxaxaxaxaxax OUT= MAC=02:e0:4d:02:07:4d:d0:17:c2:59:02:e0:4d:02 SRC=151.xxx.37.xxx DST=192.168.xx.xxx LEN=103 TOS=0x00 PREC=0x00 TTL=56 ID=60318 DF PROTO=TCP SPT=443 DPT=39132 WINDOW=139 RES=0x00 ACK PSH URGP=0
Dec 21 22:42:01 computer kernel: [28172.954349] [UFW BLOCK] IN=enxxaxaxaxaxaxax OUT= MAC=02:e0:4d:02:07:4d:d0:17:c2:59:02:e0:4d:02 SRC=151.xxx.117.xxx DST=192.168.xx.xxx LEN=103 TOS=0x00 PREC=0x00 TTL=53 ID=14221 DF PROTO=TCP SPT=443 DPT=44260 WINDOW=139 RES=0x00 ACK PSH URGP=0
Dec 21 22:42:01 computer kernel: [28172.955357] [UFW BLOCK] IN=enxxaxaxaxaxaxax OUT= MAC=02:e0:4d:02:07:4d:d0:17:c2:59:02:e0:4d:02 SRC=151.xxx.117.xxx DST=192.168.xx.xxx LEN=103 TOS=0x00 PREC=0x00 TTL=53 ID=17568 DF PROTO=TCP SPT=443 DPT=44256 WINDOW=83 RES=0x00 ACK PSH URGP=0
Dec 21 22:42:15 computer kernel: [28187.634573] [UFW BLOCK] IN=enxxaxaxaxaxaxax OUT= MAC=02:e0:4d:02:07:4d:d0:17:c2:59:02:e0:4d:02 SRC=151.xxx.37.xxx DST=192.168.xx.xxx LEN=103 TOS=0x00 PREC=0x00 TTL=55 ID=60326 DF PROTO=TCP SPT=443 DPT=39132 WINDOW=139 RES=0x00 ACK PSH FIN URGP=0
Dec 21 22:43:00 computer kernel: [28231.919222] [UFW BLOCK] IN=enxxaxaxaxaxaxax OUT= MAC=02:e0:4d:02:07:4d:d0:17:c2:59:02:e0:4d:02 SRC=151.xxx.37.xxx DST=192.168.xx.xxx LEN=103 TOS=0x00 PREC=0x00 TTL=55 ID=60328 DF PROTO=TCP SPT=443 DPT=39132 WINDOW=139 RES=0x00 ACK PSH FIN URGP=0latest?d=yIl2AUoC8zA latest?i=HlmHwrhgZw8:0zkUExduZn0:F7zBnMy latest?i=HlmHwrhgZw8:0zkUExduZn0:V_sGLiP latest?d=qj6IDK7rITs latest?i=HlmHwrhgZw8:0zkUExduZn0:gIN9vFwHlmHwrhgZw8
External Content
Source RSS or Atom Feed
Feed Location https://feeds.feedburner.com/linuxquestions/latest
Feed Title LinuxQuestions.org
Feed Link https://www.linuxquestions.org/questions/
Reply 0 comments