Now it seems the firewall is stopping freshclam to download updates. Any ideas?
freshclam-log
Wed Sep 11 11:04:53 2019 -> --------------------------------------
Wed Sep 11 11:04:53 2019 -> ClamAV update process started at Wed Sep 11 11:04:53 2019
Wed Sep 11 11:04:53 2019 -> WARNING: Your ClamAV installation is OUTDATED!
Wed Sep 11 11:04:53 2019 -> WARNING: Local version: 0.100.3 Recommended version: 0.101.4
Wed Sep 11 11:04:53 2019 -> DON'T PANIC! Read
https://www.clamav.net/documents/upgrading-clamavWed Sep 11 11:04:53 2019 -> main.cvd is up to date (version: 58, sigs: 4566249, f-level: 60, builder: sigmgr)
Wed Sep 11 11:05:24 2019 -> nonblock_recv: recv timing out (30 secs)
Wed Sep 11 11:05:24 2019 -> WARNING: getfile: Download interrupted: Operation now in progress (IP: 104.16.219.84)
Wed Sep 11 11:05:24 2019 -> WARNING: getpatch: Can't download daily-25569.cdiff from
db.se.clamav.netCan't query
daily.25569.93.0.0.6810DB54.ping.clamav.netWed Sep 11 11:05:24 2019 -> WARNING: getpatch: Can't download daily-25569.cdiff from
db.se.clamav.netWed Sep 11 11:05:24 2019 -> WARNING: getpatch: Can't download daily-25569.cdiff from
db.se.clamav.netWed Sep 11 11:05:24 2019 -> WARNING: getpatch: Can't download daily-25569.cdiff from
db.se.clamav.netWed Sep 11 11:05:24 2019 -> WARNING: getpatch: Can't download daily-25569.cdiff from
db.se.clamav.netWed Sep 11 11:05:24 2019 -> WARNING: Incremental update failed, trying to download daily.cvd
Wed Sep 11 11:06:09 2019 -> nonblock_recv: recv timing out (30 secs)
Wed Sep 11 11:06:09 2019 -> WARNING: getfile: Download interrupted: Operation now in progress (IP: 104.16.218.84)
Wed Sep 11 11:06:09 2019 -> WARNING: Can't download daily.cvd from
db.se.clamav.netCan't query
daily.0.93.0.0.6810DA54.ping.clamav.netWed Sep 11 11:06:09 2019 -> Trying again in 5 secs...
Wed Sep 11 11:06:14 2019 -> ClamAV update process started at Wed Sep 11 11:06:14 2019
Wed Sep 11 11:06:14 2019 -> WARNING: Your ClamAV installation is OUTDATED!
Wed Sep 11 11:06:14 2019 -> WARNING: Local version: 0.100.3 Recommended version: 0.101.4
Wed Sep 11 11:06:14 2019 -> DON'T PANIC! Read
https://www.clamav.net/documents/upgrading-clamavWed Sep 11 11:06:14 2019 -> main.cvd is up to date (version: 58, sigs: 4566249, f-level: 60, builder: sigmgr)
Wed Sep 11 11:06:15 2019 -> Trying host
db.se.clamav.net (104.16.219.84)...
Wed Sep 11 11:06:45 2019 -> nonblock_recv: recv timing out (30 secs)
Wed Sep 11 11:06:45 2019 -> WARNING: getfile: Download interrupted: Operation now in progress (IP: 104.16.219.84)
Wed Sep 11 11:06:45 2019 -> WARNING: getpatch: Can't download daily-25569.cdiff from
db.se.clamav.netCan't query
daily.25569.93.0.0.6810DB54.ping.clamav.netWed Sep 11 11:06:46 2019 -> WARNING: getpatch: Can't download daily-25569.cdiff from
db.se.clamav.netWed Sep 11 11:06:46 2019 -> WARNING: getpatch: Can't download daily-25569.cdiff from
db.se.clamav.netWed Sep 11 11:06:46 2019 -> WARNING: getpatch: Can't download daily-25569.cdiff from
db.se.clamav.netWed Sep 11 11:06:46 2019 -> WARNING: getpatch: Can't download daily-25569.cdiff from
db.se.clamav.netWed Sep 11 11:06:46 2019 -> WARNING: Incremental update failed, trying to download daily.cvd
Wed Sep 11 11:07:30 2019 -> nonblock_recv: recv timing out (30 secs)
Wed Sep 11 11:07:30 2019 -> WARNING: getfile: Download interrupted: Operation now in progress (IP: 104.16.218.84)
Wed Sep 11 11:07:30 2019 -> WARNING: Can't download daily.cvd from
db.se.clamav.netCan't query
daily.0.93.0.0.6810DA54.ping.clamav.netWed Sep 11 11:07:30 2019 -> Trying again in 5 secs...
Wed Sep 11 11:07:35 2019 -> ClamAV update process started at Wed Sep 11 11:07:35 2019
Wed Sep 11 11:07:35 2019 -> WARNING: Your ClamAV installation is OUTDATED!
Wed Sep 11 11:07:35 2019 -> WARNING: Local version: 0.100.3 Recommended version: 0.101.4
Wed Sep 11 11:07:35 2019 -> DON'T PANIC! Read
https://www.clamav.net/documents/upgrading-clamavWed Sep 11 11:07:35 2019 -> main.cvd is up to date (version: 58, sigs: 4566249, f-level: 60, builder: sigmgr)
Wed Sep 11 11:08:07 2019 -> nonblock_recv: recv timing out (30 secs)
Wed Sep 11 11:08:07 2019 -> WARNING: getfile: Download interrupted: Operation now in progress (IP: 104.16.219.84)
Wed Sep 11 11:08:07 2019 -> WARNING: getpatch: Can't download daily-25569.cdiff from
db.se.clamav.netCan't query
daily.25569.93.0.0.6810DB54.ping.clamav.netWed Sep 11 11:08:07 2019 -> WARNING: getpatch: Can't download daily-25569.cdiff from
db.se.clamav.netWed Sep 11 11:08:07 2019 -> WARNING: getpatch: Can't download daily-25569.cdiff from
db.se.clamav.netWed Sep 11 11:08:07 2019 -> WARNING: getpatch: Can't download daily-25569.cdiff from
db.se.clamav.netWed Sep 11 11:08:07 2019 -> WARNING: getpatch: Can't download daily-25569.cdiff from
db.se.clamav.netWed Sep 11 11:08:07 2019 -> WARNING: Incremental update failed, trying to download daily.cvd
Wed Sep 11 11:08:51 2019 -> nonblock_recv: recv timing out (30 secs)
Wed Sep 11 11:08:51 2019 -> WARNING: getfile: Download interrupted: Operation now in progress (IP: 104.16.219.84)
Wed Sep 11 11:08:51 2019 -> WARNING: Can't download daily.cvd from
db.se.clamav.netCan't query
daily.0.93.0.0.6810DB54.ping.clamav.netWed Sep 11 11:08:52 2019 -> Trying again in 5 secs...
Wed Sep 11 11:08:57 2019 -> ClamAV update process started at Wed Sep 11 11:08:57 2019
Wed Sep 11 11:08:57 2019 -> WARNING: Your ClamAV installation is OUTDATED!
Wed Sep 11 11:08:57 2019 -> WARNING: Local version: 0.100.3 Recommended version: 0.101.4
Wed Sep 11 11:08:57 2019 -> DON'T PANIC! Read
https://www.clamav.net/documents/upgrading-clamavWed Sep 11 11:08:57 2019 -> main.cvd is up to date (version: 58, sigs: 4566249, f-level: 60, builder: sigmgr)
Wed Sep 11 11:09:28 2019 -> nonblock_recv: recv timing out (30 secs)
Wed Sep 11 11:09:28 2019 -> WARNING: getfile: Download interrupted: Operation now in progress (IP: 104.16.218.84)
Wed Sep 11 11:09:28 2019 -> WARNING: getpatch: Can't download daily-25569.cdiff from
db.se.clamav.netCan't query
daily.25569.93.0.0.6810DA54.ping.clamav.netWed Sep 11 11:09:28 2019 -> WARNING: getpatch: Can't download daily-25569.cdiff from
db.se.clamav.netWed Sep 11 11:09:28 2019 -> WARNING: getpatch: Can't download daily-25569.cdiff from
db.se.clamav.netWed Sep 11 11:09:28 2019 -> WARNING: getpatch: Can't download daily-25569.cdiff from
db.se.clamav.netWed Sep 11 11:09:28 2019 -> WARNING: getpatch: Can't download daily-25569.cdiff from
db.se.clamav.netWed Sep 11 11:09:28 2019 -> WARNING: Incremental update failed, trying to download daily.cvd
Wed Sep 11 11:10:13 2019 -> nonblock_recv: recv timing out (30 secs)
Wed Sep 11 11:10:13 2019 -> WARNING: getfile: Download interrupted: Operation now in progress (IP: 104.16.218.84)
Wed Sep 11 11:10:13 2019 -> WARNING: Can't download daily.cvd from
db.se.clamav.netCan't query
daily.0.93.0.0.6810DA54.ping.clamav.netWed Sep 11 11:10:13 2019 -> Trying again in 5 secs...
Wed Sep 11 11:10:18 2019 -> ClamAV update process started at Wed Sep 11 11:10:18 2019
Wed Sep 11 11:10:18 2019 -> WARNING: Your ClamAV installation is OUTDATED!
Wed Sep 11 11:10:18 2019 -> WARNING: Local version: 0.100.3 Recommended version: 0.101.4
Wed Sep 11 11:10:18 2019 -> DON'T PANIC! Read
https://www.clamav.net/documents/upgrading-clamavWed Sep 11 11:10:18 2019 -> main.cvd is up to date (version: 58, sigs: 4566249, f-level: 60, builder: sigmgr)
Wed Sep 11 11:10:19 2019 -> Trying host
db.se.clamav.net (104.16.219.84)...
Wed Sep 11 11:10:49 2019 -> nonblock_recv: recv timing out (30 secs)
Wed Sep 11 11:10:49 2019 -> WARNING: getfile: Download interrupted: Operation now in progress (IP: 104.16.219.84)
Wed Sep 11 11:10:49 2019 -> WARNING: getpatch: Can't download daily-25569.cdiff from
db.se.clamav.netCan't query
daily.25569.93.0.0.6810DB54.ping.clamav.netWed Sep 11 11:10:50 2019 -> WARNING: getpatch: Can't download daily-25569.cdiff from
db.se.clamav.netWed Sep 11 11:10:50 2019 -> WARNING: getpatch: Can't download daily-25569.cdiff from
db.se.clamav.netWed Sep 11 11:10:50 2019 -> WARNING: getpatch: Can't download daily-25569.cdiff from
db.se.clamav.netWed Sep 11 11:10:50 2019 -> ERROR: getpatch: Can't download daily-25569.cdiff from
db.se.clamav.netWed Sep 11 11:10:50 2019 -> WARNING: Incremental update failed, trying to download daily.cvd
Wed Sep 11 11:11:34 2019 -> nonblock_recv: recv timing out (30 secs)
Wed Sep 11 11:11:34 2019 -> ERROR: getfile: Download interrupted: Operation now in progress (IP: 104.16.219.84)
Wed Sep 11 11:11:34 2019 -> ERROR: Can't download daily.cvd from
db.se.clamav.netCan't query
daily.0.93.0.0.6810DB54.ping.clamav.netWed Sep 11 11:11:35 2019 -> Giving up on db.se.clamav.net...
Wed Sep 11 11:11:35 2019 -> ClamAV update process started at Wed Sep 11 11:11:35 2019
Wed Sep 11 11:11:35 2019 -> WARNING: Your ClamAV installation is OUTDATED!
Wed Sep 11 11:11:35 2019 -> WARNING: Local version: 0.100.3 Recommended version: 0.101.4
Wed Sep 11 11:11:35 2019 -> DON'T PANIC! Read
https://www.clamav.net/documents/upgrading-clamavWed Sep 11 11:11:35 2019 -> main.cvd is up to date (version: 58, sigs: 4566249, f-level: 60, builder: sigmgr)
Wed Sep 11 11:11:36 2019 -> Trying host
database.clamav.net (104.16.218.84)...
Wed Sep 11 11:12:06 2019 -> nonblock_recv: recv timing out (30 secs)
Wed Sep 11 11:12:06 2019 -> WARNING: getfile: Download interrupted: Operation now in progress (IP: 104.16.218.84)
Wed Sep 11 11:12:06 2019 -> WARNING: getpatch: Can't download daily-25569.cdiff from
database.clamav.netCan't query
daily.25569.93.0.0.6810DA54.ping.clamav.netWed Sep 11 11:12:06 2019 -> WARNING: getpatch: Can't download daily-25569.cdiff from
database.clamav.netWed Sep 11 11:12:06 2019 -> WARNING: getpatch: Can't download daily-25569.cdiff from
database.clamav.netWed Sep 11 11:12:06 2019 -> WARNING: getpatch: Can't download daily-25569.cdiff from
database.clamav.netWed Sep 11 11:12:06 2019 -> ERROR: getpatch: Can't download daily-25569.cdiff from
database.clamav.netWed Sep 11 11:12:06 2019 -> WARNING: Incremental update failed, trying to download daily.cvd
Wed Sep 11 11:12:51 2019 -> nonblock_recv: recv timing out (30 secs)
Wed Sep 11 11:12:51 2019 -> ERROR: getfile: Download interrupted: Operation now in progress (IP: 104.16.219.84)
Wed Sep 11 11:12:51 2019 -> ERROR: Can't download daily.cvd from
database.clamav.netCan't query
daily.0.93.0.0.6810DB54.ping.clamav.netWed Sep 11 11:12:52 2019 -> Giving up on database.clamav.net...
Wed Sep 11 11:12:52 2019 -> Update failed. Your network may be down or none of the mirrors listed in /etc/clamav/freshclam.conf is working. Check
https://www.clamav.net/documents/official-mirror-faq for possible reasons.
syslog
Sep 11 11:00:16 zentyal kernel: [73529.621326] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=192.168.1.200 LEN=40 TOS=0x00 PREC=0x00 TTL=64 ID=42938 DF PROTO=TCP SPT=139 DPT=61923 WINDOW=237 RES=0x00 ACK FIN URGP=0 MARK=0x1
Sep 11 11:03:00 zentyal kernel: [73693.715692] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=192.168.1.201 LEN=71 TOS=0x00 PREC=0x00 TTL=64 ID=29745 DF PROTO=TCP SPT=443 DPT=57505 WINDOW=249 RES=0x00 ACK PSH FIN URGP=0 MARK=0x1
Sep 11 11:03:19 zentyal kernel: [73712.692731] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=82.214.44.215 LEN=148 TOS=0x00 PREC=0x00 TTL=64 ID=31106 DF PROTO=TCP SPT=993 DPT=33824 WINDOW=243 RES=0x00 ACK PSH FIN URGP=0 MARK=0x1
Sep 11 11:03:19 zentyal kernel: [73712.911476] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=82.214.44.215 LEN=148 TOS=0x00 PREC=0x00 TTL=64 ID=31107 DF PROTO=TCP SPT=993 DPT=33824 WINDOW=243 RES=0x00 ACK PSH FIN URGP=0 MARK=0x1
Sep 11 11:03:20 zentyal kernel: [73713.363442] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=82.214.44.215 LEN=148 TOS=0x00 PREC=0x00 TTL=64 ID=31108 DF PROTO=TCP SPT=993 DPT=33824 WINDOW=243 RES=0x00 ACK PSH FIN URGP=0 MARK=0x1
Sep 11 11:03:21 zentyal kernel: [73714.259487] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=82.214.44.215 LEN=148 TOS=0x00 PREC=0x00 TTL=64 ID=31109 DF PROTO=TCP SPT=993 DPT=33824 WINDOW=243 RES=0x00 ACK PSH FIN URGP=0 MARK=0x1
Sep 11 11:03:23 zentyal kernel: [73716.019537] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=82.214.44.215 LEN=148 TOS=0x00 PREC=0x00 TTL=64 ID=31110 DF PROTO=TCP SPT=993 DPT=33824 WINDOW=243 RES=0x00 ACK PSH FIN URGP=0 MARK=0x1
Sep 11 11:03:26 zentyal kernel: [73719.571417] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=82.214.44.215 LEN=148 TOS=0x00 PREC=0x00 TTL=64 ID=31111 DF PROTO=TCP SPT=993 DPT=33824 WINDOW=243 RES=0x00 ACK PSH FIN URGP=0 MARK=0x1
Sep 11 11:03:29 zentyal kernel: [73722.131420] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=192.168.1.201 LEN=71 TOS=0x00 PREC=0x00 TTL=64 ID=29746 DF PROTO=TCP SPT=443 DPT=57505 WINDOW=249 RES=0x00 ACK PSH FIN URGP=0 MARK=0x1
Sep 11 11:03:33 zentyal kernel: [73726.739373] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=82.214.44.215 LEN=148 TOS=0x00 PREC=0x00 TTL=64 ID=31112 DF PROTO=TCP SPT=993 DPT=33824 WINDOW=243 RES=0x00 ACK PSH FIN URGP=0 MARK=0x1
Sep 11 11:03:47 zentyal kernel: [73740.819168] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=82.214.44.215 LEN=148 TOS=0x00 PREC=0x00 TTL=64 ID=31113 DF PROTO=TCP SPT=993 DPT=33824 WINDOW=243 RES=0x00 ACK PSH FIN URGP=0 MARK=0x1
Sep 11 11:03:49 zentyal kernel: [73742.611226] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=37.2.232.59 LEN=148 TOS=0x00 PREC=0x00 TTL=64 ID=58086 DF PROTO=TCP SPT=993 DPT=42342 WINDOW=284 RES=0x00 ACK PSH FIN URGP=0 MARK=0x1
Sep 11 11:03:49 zentyal kernel: [73742.611294] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=37.2.232.59 LEN=148 TOS=0x00 PREC=0x00 TTL=64 ID=47645 DF PROTO=TCP SPT=993 DPT=42344 WINDOW=252 RES=0x00 ACK PSH FIN URGP=0 MARK=0x1
Sep 11 11:04:16 zentyal kernel: [73769.234948] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=82.214.44.215 LEN=148 TOS=0x00 PREC=0x00 TTL=64 ID=31114 DF PROTO=TCP SPT=993 DPT=33824 WINDOW=243 RES=0x00 ACK PSH FIN URGP=0 MARK=0x1
Sep 11 11:04:30 zentyal kernel: [73783.504367] zentyal-firewall drop IN=eth0 OUT= MAC=00:0c:29:be:5d:f2:00:1d:aa:69:86:78:08:00 SRC=82.214.44.215 DST=192.168.1.NN LEN=40 TOS=0x00 PREC=0x00 TTL=254 ID=0 PROTO=TCP SPT=60464 DPT=993 WINDOW=0 RES=0x00 RST URGP=0 MARK=0x1
Sep 11 11:04:34 zentyal kernel: [73787.503920] zentyal-firewall drop IN=eth0 OUT= MAC=00:0c:29:be:5d:f2:00:1d:aa:69:86:78:08:00 SRC=82.214.44.215 DST=192.168.1.NN LEN=40 TOS=0x00 PREC=0x00 TTL=254 ID=0 PROTO=TCP SPT=60470 DPT=993 WINDOW=0 RES=0x00 RST URGP=0 MARK=0x1
Sep 11 11:04:38 zentyal kernel: [73791.504188] zentyal-firewall drop IN=eth0 OUT= MAC=00:0c:29:be:5d:f2:00:1d:aa:69:86:78:08:00 SRC=82.214.44.215 DST=192.168.1.NN LEN=40 TOS=0x00 PREC=0x00 TTL=254 ID=0 PROTO=TCP SPT=60456 DPT=993 WINDOW=0 RES=0x00 RST URGP=0 MARK=0x1
Sep 11 11:04:38 zentyal kernel: [73791.504235] zentyal-firewall drop IN=eth0 OUT= MAC=00:0c:29:be:5d:f2:00:1d:aa:69:86:78:08:00 SRC=82.214.44.215 DST=192.168.1.NN LEN=40 TOS=0x00 PREC=0x00 TTL=254 ID=0 PROTO=TCP SPT=60472 DPT=993 WINDOW=0 RES=0x00 RST URGP=0 MARK=0x1
Sep 11 11:04:54 zentyal kernel: [73807.504397] zentyal-firewall drop IN=eth0 OUT= MAC=00:0c:29:be:5d:f2:00:1d:aa:69:86:78:08:00 SRC=82.214.44.215 DST=192.168.1.NN LEN=40 TOS=0x00 PREC=0x00 TTL=254 ID=0 PROTO=TCP SPT=60466 DPT=993 WINDOW=0 RES=0x00 RST URGP=0 MARK=0x1
Sep 11 11:05:13 zentyal kernel: [73826.578340] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=82.214.44.215 LEN=148 TOS=0x00 PREC=0x00 TTL=64 ID=31115 DF PROTO=TCP SPT=993 DPT=33824 WINDOW=243 RES=0x00 ACK PSH FIN URGP=0 MARK=0x1
Sep 11 11:05:51 zentyal kernel: [73863.958073] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=104.16.219.84 LEN=40 TOS=0x00 PREC=0x00 TTL=64 ID=57985 DF PROTO=TCP SPT=60672 DPT=80 WINDOW=662 RES=0x00 ACK FIN URGP=0 MARK=0x1
Sep 11 11:06:19 zentyal kernel: [73892.113836] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=104.16.219.84 LEN=40 TOS=0x00 PREC=0x00 TTL=64 ID=57986 DF PROTO=TCP SPT=60672 DPT=80 WINDOW=662 RES=0x00 ACK FIN URGP=0 MARK=0x1
Sep 11 11:06:36 zentyal kernel: [73909.009614] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=104.16.218.84 LEN=40 TOS=0x00 PREC=0x00 TTL=64 ID=37248 DF PROTO=TCP SPT=56872 DPT=80 WINDOW=6589 RES=0x00 ACK FIN URGP=0 MARK=0x1
Sep 11 11:07:04 zentyal kernel: [73937.169358] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=104.16.218.84 LEN=40 TOS=0x00 PREC=0x00 TTL=64 ID=37249 DF PROTO=TCP SPT=56872 DPT=80 WINDOW=6589 RES=0x00 ACK FIN URGP=0 MARK=0x1
Sep 11 11:07:12 zentyal kernel: [73945.617287] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=104.16.219.84 LEN=40 TOS=0x00 PREC=0x00 TTL=64 ID=60892 DF PROTO=TCP SPT=60748 DPT=80 WINDOW=662 RES=0x00 ACK FIN URGP=0 MARK=0x1
Sep 11 11:07:39 zentyal kernel: [73971.985071] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=104.16.219.84 LEN=40 TOS=0x00 PREC=0x00 TTL=64 ID=60893 DF PROTO=TCP SPT=60748 DPT=80 WINDOW=662 RES=0x00 ACK FIN URGP=0 MARK=0x1
Sep 11 11:07:57 zentyal kernel: [73990.416899] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=104.16.218.84 LEN=40 TOS=0x00 PREC=0x00 TTL=64 ID=1377 DF PROTO=TCP SPT=56950 DPT=80 WINDOW=4346 RES=0x00 ACK FIN URGP=0 MARK=0x1
Sep 11 11:08:24 zentyal kernel: [74017.040697] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=104.16.218.84 LEN=40 TOS=0x00 PREC=0x00 TTL=64 ID=1378 DF PROTO=TCP SPT=56950 DPT=80 WINDOW=4346 RES=0x00 ACK FIN URGP=0 MARK=0x1
Sep 11 11:08:33 zentyal kernel: [74026.768528] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=104.16.219.84 LEN=40 TOS=0x00 PREC=0x00 TTL=64 ID=44360 DF PROTO=TCP SPT=60828 DPT=80 WINDOW=662 RES=0x00 ACK FIN URGP=0 MARK=0x1
Sep 11 11:09:00 zentyal kernel: [74053.904258] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=104.16.219.84 LEN=40 TOS=0x00 PREC=0x00 TTL=64 ID=44361 DF PROTO=TCP SPT=60828 DPT=80 WINDOW=662 RES=0x00 ACK FIN URGP=0 MARK=0x1
Sep 11 11:09:18 zentyal kernel: [74071.568090] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=104.16.219.84 LEN=40 TOS=0x00 PREC=0x00 TTL=64 ID=63089 DF PROTO=TCP SPT=60856 DPT=80 WINDOW=3749 RES=0x00 ACK FIN URGP=0 MARK=0x1
Sep 11 11:09:46 zentyal kernel: [74098.959822] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=104.16.219.84 LEN=40 TOS=0x00 PREC=0x00 TTL=64 ID=63090 DF PROTO=TCP SPT=60856 DPT=80 WINDOW=3749 RES=0x00 ACK FIN URGP=0 MARK=0x1
Sep 11 11:09:54 zentyal kernel: [74107.919806] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=104.16.218.84 LEN=40 TOS=0x00 PREC=0x00 TTL=64 ID=2416 DF PROTO=TCP SPT=57076 DPT=80 WINDOW=662 RES=0x00 ACK FIN URGP=0 MARK=0x1
Sep 11 11:10:22 zentyal kernel: [74135.827476] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=104.16.218.84 LEN=40 TOS=0x00 PREC=0x00 TTL=64 ID=2417 DF PROTO=TCP SPT=57076 DPT=80 WINDOW=662 RES=0x00 ACK FIN URGP=0 MARK=0x1
Sep 11 11:10:39 zentyal kernel: [74152.719302] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=104.16.218.84 LEN=40 TOS=0x00 PREC=0x00 TTL=64 ID=11269 DF PROTO=TCP SPT=57106 DPT=80 WINDOW=7963 RES=0x00 ACK FIN URGP=0 MARK=0x1
Sep 11 11:11:01 zentyal kernel: [74173.967086] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=192.168.1.201 LEN=71 TOS=0x00 PREC=0x00 TTL=64 ID=38108 DF PROTO=TCP SPT=443 DPT=62800 WINDOW=249 RES=0x00 ACK PSH FIN URGP=0 MARK=0x1
Sep 11 11:11:07 zentyal kernel: [74180.879125] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=104.16.218.84 LEN=40 TOS=0x00 PREC=0x00 TTL=64 ID=11270 DF PROTO=TCP SPT=57106 DPT=80 WINDOW=7963 RES=0x00 ACK FIN URGP=0 MARK=0x1
Sep 11 11:11:16 zentyal kernel: [74189.327110] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=104.16.219.84 LEN=40 TOS=0x00 PREC=0x00 TTL=64 ID=23818 DF PROTO=TCP SPT=60982 DPT=80 WINDOW=662 RES=0x00 ACK FIN URGP=0 MARK=0x1
Sep 11 11:11:28 zentyal kernel: [74201.358824] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=192.168.1.201 LEN=71 TOS=0x00 PREC=0x00 TTL=64 ID=38109 DF PROTO=TCP SPT=443 DPT=62800 WINDOW=249 RES=0x00 ACK PSH FIN URGP=0 MARK=0x1
Sep 11 11:11:42 zentyal kernel: [74215.694709] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=104.16.219.84 LEN=40 TOS=0x00 PREC=0x00 TTL=64 ID=23819 DF PROTO=TCP SPT=60982 DPT=80 WINDOW=662 RES=0x00 ACK FIN URGP=0 MARK=0x1
Sep 11 11:11:49 zentyal kernel: [74222.862652] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=192.168.1.200 LEN=40 TOS=0x00 PREC=0x00 TTL=64 ID=53892 DF PROTO=TCP SPT=139 DPT=53802 WINDOW=237 RES=0x00 ACK FIN URGP=0 MARK=0x1
Sep 11 11:12:00 zentyal kernel: [74233.870560] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=192.168.1.201 LEN=71 TOS=0x00 PREC=0x00 TTL=64 ID=8868 DF PROTO=TCP SPT=443 DPT=62808 WINDOW=249 RES=0x00 ACK PSH FIN URGP=0 MARK=0x1
Sep 11 11:12:01 zentyal kernel: [74234.638531] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=104.16.219.84 LEN=40 TOS=0x00 PREC=0x00 TTL=64 ID=10349 DF PROTO=TCP SPT=32794 DPT=80 WINDOW=3458 RES=0x00 ACK FIN URGP=0 MARK=0x1
Sep 11 11:12:17 zentyal kernel: [74250.518383] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=192.168.1.200 LEN=40 TOS=0x00 PREC=0x00 TTL=64 ID=53893 DF PROTO=TCP SPT=139 DPT=53802 WINDOW=237 RES=0x00 ACK FIN URGP=0 MARK=0x1
Sep 11 11:12:29 zentyal kernel: [74262.798275] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=192.168.1.201 LEN=71 TOS=0x00 PREC=0x00 TTL=64 ID=8869 DF PROTO=TCP SPT=443 DPT=62808 WINDOW=249 RES=0x00 ACK PSH FIN URGP=0 MARK=0x1
Sep 11 11:12:29 zentyal kernel: [74262.798399] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=104.16.219.84 LEN=40 TOS=0x00 PREC=0x00 TTL=64 ID=10350 DF PROTO=TCP SPT=32794 DPT=80 WINDOW=3458 RES=0x00 ACK FIN URGP=0 MARK=0x1
Sep 11 11:12:32 zentyal kernel: [74265.870253] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=104.16.218.84 LEN=40 TOS=0x00 PREC=0x00 TTL=64 ID=13344 DF PROTO=TCP SPT=57242 DPT=80 WINDOW=662 RES=0x00 ACK FIN URGP=0 MARK=0x1
Sep 11 11:13:00 zentyal kernel: [74293.518049] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=104.16.218.84 LEN=40 TOS=0x00 PREC=0x00 TTL=64 ID=13345 DF PROTO=TCP SPT=57242 DPT=80 WINDOW=662 RES=0x00 ACK FIN URGP=0 MARK=0x1
Sep 11 11:13:18 zentyal kernel: [74311.437869] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=104.16.219.84 LEN=40 TOS=0x00 PREC=0x00 TTL=64 ID=61385 DF PROTO=TCP SPT=32868 DPT=80 WINDOW=3729 RES=0x00 ACK FIN URGP=0 MARK=0x1
Sep 11 11:13:45 zentyal kernel: [74338.573560] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=104.16.219.84 LEN=40 TOS=0x00 PREC=0x00 TTL=64 ID=61386 DF PROTO=TCP SPT=32868 DPT=80 WINDOW=3729 RES=0x00 ACK FIN URGP=0 MARK=0x1
Sep 11 11:15:23 zentyal kernel: [74436.876612] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=94.242.250.62 LEN=148 TOS=0x00 PREC=0x00 TTL=64 ID=60853 DF PROTO=TCP SPT=993 DPT=40606 WINDOW=375 RES=0x00 ACK PSH FIN URGP=0 MARK=0x1
Sep 11 11:15:23 zentyal kernel: [74436.876615] zentyal-firewall drop IN= OUT=eth0 SRC=192.168.1.NN DST=94.242.250.62 LEN=148 TOS=0x00 PREC=0x00 TTL=64 ID=39582 DF PROTO=TCP SPT=993 DPT=40608 WINDOW=269 RES=0x00 ACK PSH FIN URGP=0 MARK=0x1