OPNsense Forum

English Forums => General Discussion => Topic started by: Jamira40 on February 24, 2020, 03:43:13 PM

Title: Issue with Transparent Bridge Mode
Post by: Jamira40 on February 24, 2020, 03:43:13 PM
Hello,

I would like to ask someone here what is wrong with this setup. I tried to setup Transparent Bridge mode (mentioned to be as firewall)

What I have. 3 Interfaces WAN, LAN, MGT
WAN and LAN is Bridget to Bridge0 (BR0)

vSwitch and Networks have enabled Promiscouous Mode. (vmware)
BR0 have Allow All Traffic rule. There are no other rules in Firewall.

Outbound NAT is disabled. I also edited system Tunnables.
Basically I followed documentation.

And Im still getting tons of "Default deny rule" on BR0.
I have absolutley no idea what is causing this issue. I have suspsicion that Opened Connections fall under Allow All rule but new connections do not.

Thanks!
Title: Re: Issue with Transparent Bridge Mode
Post by: chemlud on February 24, 2020, 04:26:54 PM
How about some logs and config screenshots?

Out-of-state traffic?
Title: Re: Issue with Transparent Bridge Mode
Post by: Jamira40 on February 24, 2020, 04:37:40 PM
Sure.
It might be Out of State ill check it.

Edit: Looks like Out Of State issue.
I think this might cause that Port Bonding in vmware.

(https://exonshare.com/nikE3A53FhQi5By/Annotation%202020-02-24%20163034.jpg)
(https://exonshare.com/8GOdxaocl8jXGd7/Annotation%202020-02-24%20163043.jpg)
(https://exonshare.com/920Na1mN64T1C7g/Annotation%202020-02-24%20163047.jpg)
(https://exonshare.com/3lz2bqEbx47fWhf/Annotation%202020-02-24%20163052.jpg)
(https://exonshare.com/L2nS7z2UuQOT5S9/Annotation%202020-02-24%20163056.jpg)
(https://exonshare.com/zHW4a3gCW631rG2/Annotation%202020-02-24%20163101.jpg)
(https://exonshare.com/gUHvj7ABXP1ynjy/Annotation%202020-02-24%20163123.jpg)
Title: Re: Issue with Transparent Bridge Mode
Post by: jormachea on June 11, 2020, 05:03:40 AM
I'm having the same issue. Could you fix it?
Title: Re: Issue with Transparent Bridge Mode
Post by: chemlud on June 11, 2020, 09:08:54 AM
Search the interwebs for Out-of-state traffic... ;-)