There is a bug in the tracking code that often causes such things. When a TCP connection is finished using FIN/ACK_FIN the tracking entry is immediately deleted.I have recently noticed that my firewall has been dropping many invalid forwards.
I applied the drop rules as you have suggested. Since this morning the counters for these rules have grown to 350 packets for FIN and 244 for RST. The intersesting part is that the TV has been in standby for more than a week. I gues that it is communicating eventhough in standby. You beleive that there nothing to worry abour?There is a bug in the tracking code that often causes such things. When a TCP connection is finished using FIN/ACK_FIN the tracking entry is immediately deleted.I have recently noticed that my firewall has been dropping many invalid forwards.
When the remote side sends another packet for this connection, e.g. an ACK_FIN or a RST, that is treated as invalid.
I usually add another drop rule before the drop invalid that matches on protocol TCP with flag FIN and another one with flag RST so I can track this issue using separate counters.
You beleive that there nothing to worry abour?
What do you mean by long version....No I do not believe there is any cause for concern.
I would try the long version software though as I do not experience this phenomena.