The packet was dropped by Misc.

USG 310

We are having problems contacting a server on internet. While troubleshooting we found that we can ping the host directly from the WAN interface on the firewall, but not from inside. Either from a computer or by pinging through LAN interface on firewall.

I don't see anything in the config that would block this traffic.

I found this in routing traces:

The packet outgoing interface: WAN1
The packet outgoing interface: x
The packet was dropped by Misc.

What is misc? I tried searching for this statement but found no hits at all. Are there any steps I can use to troubleshoot it further?

All Replies

  • Zyxel_Cooldia
    Zyxel_Cooldia Posts: 1,510  Zyxel Employee
    100 Answers Sixth Anniversary 1000 Comments Zyxel Certified Sales Associate
    edited November 2023

    Hi @TommyB,

    Welcome to Zyxel community. does it have any blocked log in event log(MONITOR > Log > View log)?

    Don't miss this great chance to upgrade your Nebula org. for free!

  • Thanks Cooldia!

    I could not stay away from it and added an allow rule at the top of the security policy. Problem was that we had a FQDN object that blocks access to a news site that is hosted on AWS which seems to be shared with the site we were trying to reach.

  • Zyxel_Cooldia
    Zyxel_Cooldia Posts: 1,510  Zyxel Employee
    100 Answers Sixth Anniversary 1000 Comments Zyxel Certified Sales Associate

    If the destination shares the same IP address, it will be blocked by the security policy.

    Don't miss this great chance to upgrade your Nebula org. for free!

Security Highlight