OPNsense Forum

Archive => 20.7 Legacy Series => Topic started by: cogumel0 on December 21, 2020, 01:37:27 PM

Title: Firewall rule being ignored
Post by: cogumel0 on December 21, 2020, 01:37:27 PM
I've got my firewall configured with a allow all IPv4 traffic to non-private address spaces (10.0.0.0/8, 172.16.0.0/12, 192.168.0.0/16) as seen in the picture below.

Yet, despite that, a particular non-private address space IP address seems to be getting caught by the default deny rule and I can't explain why. Have a look at these logs in the second picture.

Why is it that that particular IP is not getting matched by the allow non-PAS traffic?? And why only that particular IP?! Why is it getting matched by the default deny rule?
Title: Re: Firewall rule being ignored
Post by: chemlud on December 21, 2020, 02:17:04 PM
Hard to say without more info, best guess: out-of-state traffic. As usual, i.e. once a week now in these forums...
Title: Re: Firewall rule being ignored
Post by: cogumel0 on December 21, 2020, 02:50:56 PM
chemlud, what more info do you require?
Title: Re: Firewall rule being ignored
Post by: chemlud on December 21, 2020, 03:55:09 PM
Have a look at the status flags of your blocked packages. ;-) And search the webs for out-of-state traffic...