OPNsense Forum

English Forums => 25.7, 25.10 Series => Topic started by: dotsch on November 15, 2025, 06:26:24 PM

Title: Understanding Logging or an issue?
Post by: dotsch on November 15, 2025, 06:26:24 PM
Hello,

I comming from pfSense and migrated to OpnSense. Not shure, if it's an understanding problem or a other issue.

Using Maltrail, IDS/IPS and Crowdsec. In the floating firewall rules I have some IPBLs blocklist to block incoming and outgoing to ToR, DROP, ET and some more. Also a VoIP NAT into one of the DMZ interfaces.

In the IDS/IPS, Crodsec and Maltrail and also in the firewall log I did not get any log alerts for connection attempts, like some bot nets. I expected, that in Suricatta, Maltrail and these attempts would be alerted.
Some time ago, I got also some Surricata and Maltrail alerts.

I this behaviour OK? Or I am wrong or is there an issue?

Title: Re: Understanding Logging or an issue?
Post by: dotsch on November 15, 2025, 08:03:27 PM
Don't understand, if it's related to the to the WAN reject rules, that nothing is logged?
The global logging is enabled, logging of the WAN reject rule also.