OPNsense Forum

English Forums => Intrusion Detection and Prevention => Topic started by: dilby on January 27, 2020, 03:39:50 pm

Title: Spamhaus DROP/EDROP configuration clarification
Post by: dilby on January 27, 2020, 03:39:50 pm
Hi, I'm following the instructions on this page : https://docs.opnsense.org/manual/how-tos/edrop.html

Would like to get clarification on the LAN rules configuration. The heading says "Now do the same for outbound traffic traffic on the LAN interface".
However, the default direction when creating a rule is "In". Should this be set to "Out" (the instructions do not specify) ?

Thanks
Title: Re: Spamhaus DROP/EDROP configuration clarification
Post by: johnsmi on January 27, 2020, 11:58:03 pm
Set it to "in": Outbound Traffic goes from LAN to WAN, thus the firewall sees it INcoming on the LAN-interface.

LAN -> firewall -> WAN