OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • Archive »
  • 18.1 Legacy Series »
  • Default Deny Rule TCP port domain controller
« previous next »
  • Print
Pages: [1]

Author Topic: Default Deny Rule TCP port domain controller  (Read 2399 times)

Germano

  • Newbie
  • *
  • Posts: 19
  • Karma: 1
    • View Profile
Default Deny Rule TCP port domain controller
« on: July 12, 2018, 01:07:36 pm »
Hello,

I do not understand the Default deny rule are not displayed in the interface.
through vlans I communicate with my domain but it blocks me TCP port 389,135,139,445.

yet I have a rule in LAN that allows communication LAN 10.10.10.0 LAN to an alias VLAN 10.10.30.0 ANY

all other ports are allow except those there.
I have to do what? it's still internal.
Logged

mimugmail

  • Hero Member
  • *****
  • Posts: 6299
  • Karma: 434
    • View Profile
Re: Default Deny Rule TCP port domain controller
« Reply #1 on: July 12, 2018, 01:38:05 pm »
Do you have a screenshot of your LAN ruleset?
Logged
Twitter: mimu_muc
WWW: www.routerperformance.net
Support plans: https://www.max-it.de/en/it-services/opnsense/
Commercial Plugins (German): https://opnsense.max-it.de/

franco

  • Administrator
  • Hero Member
  • *****
  • Posts: 13692
  • Karma: 1176
    • View Profile
Re: Default Deny Rule TCP port domain controller
« Reply #2 on: July 12, 2018, 01:53:04 pm »
Sounds like asymmetric traffic hitting your LAN port. You can disable state tracking in the IPv4 pass rule of your LAN.


Cheers,
Franco
Logged

Germano

  • Newbie
  • *
  • Posts: 19
  • Karma: 1
    • View Profile
Re: Default Deny Rule TCP port domain controller
« Reply #3 on: July 12, 2018, 04:11:35 pm »
Thanks, it was good now

I will not have found.

Firewall>LAN rules> IPV4 default rule      edit advanced option below.
Value STATE TYPE> NONE        apply
Logged

  • Print
Pages: [1]
« previous next »
  • OPNsense Forum »
  • Archive »
  • 18.1 Legacy Series »
  • Default Deny Rule TCP port domain controller
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2023 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2