Dropped incoming connection with a destination that is not the public ip of the vps

openaspace

Well-Known Member
Sep 16, 2019
486
13
58
Italy
Why in the firewall log of the VPS on proxmox I see incoming connection to a destination that is not my public ip?!
I would expect to see incoming connection that try to connect to the my public ip.. instead I see that the destination is different....

What mean this??!!

103 5 tap103i0-IN 31/Mar/2020:00:28:25 +0200 policy DROP: IN=fwbr103i0 OUT=fwbr103i0 PHYSIN=fwln103i0 PHYSOUT=tap103i0 SRC=xxx.xxx.xxx.xxx DST=yyy.yyy.yyy.yyy (NOT MY PUBLIC IP) LEN=40 TOS=0x00 PREC=0x00 TTL=40 ID=10224 PROTO=TCP SPT=1598 DPT=23 SEQ=3582290981 ACK=0 WINDOW=3894 SYN
 
all DST ip's of the drop in connections of the VPS , are ip by hetzner where my server is located...
what is this... ?!?

Could be this because the vps use separate mac address and public ip by hetzner and the public ip used is not set as network interfaces in the proxmox network device?

instead in the proxmox firewall I see correctly that the DST ip is the proxmox host..