This article provides troubleshooting steps to resolve packets being dropped on the SonicWall firewall due to drop code "IP Spoof".
A common cause could be a loop in the physical configuration of the SonicWall and the devices connected to it. IP Spoof drops are caused when the SonicWall sees an IP address on one network segment that, as per firewall configuration, it believes the traffic belongs to a different network segment. Also, it can be caused by a discrepancy on SonicWall ARP table information and the MAC address of the packet arriving, among other causes.
Check the following configurations if the packets are dropped due to "IP Spoof".
For more information, check out: IPSpoof dropped messages in the SonicWall Log
NOTE: Drop code numbers may change based on the firmware version, however, the drop code message (description) remains the same.
Additional drop code articles: