OPNsense Forum

English Forums => Zenarmor (Sensei) => Topic started by: rlljorge on February 23, 2024, 09:12:02 PM

Title: Block Generic TCPIP
Post by: rlljorge on February 23, 2024, 09:12:02 PM
Hello,

In my policy I blocked the Generic TCPIP but I can see traffic with success in live sessions.

I need configure some more else ?

Regards,

Rodrigo
Title: Re: Block Generic TCPIP
Post by: rlljorge on February 23, 2024, 09:13:52 PM
View the traffic pass print
Title: Re: Block Generic TCPIP
Post by: rlljorge on February 23, 2024, 09:15:11 PM
The policy details
Title: Re: Block Generic TCPIP
Post by: sy on February 24, 2024, 04:29:40 AM
Hi Rodrigo,

There is a known issue here. It should be classified as Generic TCP or Generic UDP instead of Generic TCPIP. It will be fixed with version 1.17 a the end of March.

Title: Re: Block Generic TCPIP
Post by: rlljorge on February 24, 2024, 12:15:21 PM
Hi !

But in this case, the traffic pass through with success ?

I need block in firewall rules manually ?

Thank you,

Rodrigo
Title: Re: Block Generic TCPIP
Post by: sy on February 25, 2024, 12:04:37 PM
Hi Rodrigo,

You can define custom app according to port number for it in Policy - App Controls then block it.
Title: Re: Block Generic TCPIP
Post by: rlljorge on February 25, 2024, 04:51:14 PM
Hello Sy,

I created a custom application, it detects traffic in live session  and does not block, even when marked to block.

Thank you,

Rodrigo
Title: Re: Block Generic TCPIP
Post by: IHK on February 26, 2024, 11:52:18 AM
Hi Rodrigo,

If you send us your logs, we can examine the subject in more detail.
Can you share the logs and configuration by following the instructions in the below link?

https://www.zenarmor.com/docs/support/reporting-bug
Title: Re: Block Generic TCPIP
Post by: rlljorge on February 26, 2024, 01:28:32 PM
Hi IHK,

I sent the feedback with logs.

Regards,

Rodrigo