Так, ясно, а че делать то?
забить, такое будет даже если всем все разрешить, там же написано: This is likely due to a TCP FIN packet arriving after the connection’s state has been removed. This happens because on occasion a packet will be lost, and the retransmits will be blocked because the firewall has already closed the connection.
It is harmless, and does not indicate an actual blocked connection. All stateful firewalls do this, though some don’t generate log messages for this blocked traffic even if all blocked traffic is logged.