OPNsense Forum

English Forums => General Discussion => Topic started by: duimeziod on December 28, 2024, 07:32:13 AM

Title: Unasble to traceroute firewall
Post by: duimeziod on December 28, 2024, 07:32:13 AM
When I try to ping my opnsense firewall using Linux traceroute (UDP), the firewall does not respond. However, I am able to traceroute things behind the firewall successfully, and those also show the firewall in the route. I added a WAN and LAN rule to allow anyone to reach ports 33434-33534 with UDP for that to work. I can also reach the firewall if I use traceroute with ICMP. What do I need to do to make the firewall respond to the UDP traceroute?
Title: Re: Unasble to traceroute firewall
Post by: EricPerl on December 28, 2024, 11:23:00 PM
You've opened ports on the WAN side to get traceroute to work? That seems ill advised.

What's your traceroute command line?
You're executing it from your LAN, right?