OPNsense Forum

Archive => 17.7 Legacy Series => Topic started by: ak2017 on October 05, 2017, 02:59:12 pm

Title: [SOLVED] Whatsapp blocked
Post by: ak2017 on October 05, 2017, 02:59:12 pm
I've got everything up and running with the ssl certificate installed on the devices but some application are not able to connect to the internet. I have WhatsApp installed my mac, while I can browse the internet without any issues WhatsApp isn't able to connect.

Is this a certificate issue? Is there a live log i can go through instead of refreshing the page to see the latest log entries? I'm trying to go through the firewall logs. I've used pftop but only shows ip addresses and ports but not the dns names.
Title: Whatsapp blocked
Post by: ak2017 on October 05, 2017, 08:24:35 pm
i've firgured it out but still have fixed. web.whatsapp.com needs to be bypassed and not go through a proxy. Port 80 and 443 have a NAT which redirect those rule to the proxy ports, so i've created  the below rules, which didnt work.

Interface - LAN
Protocol - TCP/UDP
Source - LAN NET
Source Port Range - HTTPS
Destination - web.whatsapp.com
Destination Port - HTTPS
Redirection - web.whatsapp.com
Port - HTTPS

Anyone where i've gone wrong?, I've opened up HTTPS on the firewall. If i disable port 443 from being redirect to 3129 then everything works again.
Title: Re: Whatsapp blocked
Post by: ak2017 on October 05, 2017, 10:20:34 pm
Fixed it.

SSL no bump sites - .whatsapp.com