1
23.7 Legacy Series / Re: Firewall rules are ignored.. but a little bit goes pass...
« on: August 11, 2023, 07:29:31 am »You keep saying 'random' - but it's really not random at all.
The firewall only sees part of the connection, so it drops it. With Keep state enabled, it needs to see all of the connection.
The other potential option, is that you've got packet loss/drops/weirdness somewhere with your Proxmox/USB NIC setup - opnsense is reacting to what it sees, or doesn't see as the case may be.
Yes random, with my ping test, and block the ping on the VLAN15, there is a packet loss of 100%...
On Proxmox side, i changed the interface for the network cards from virtio to realtek and e1000, without success.
I found a article for this problem and activated 'Bypass firewall rules for traffic on the same interface', without success...
But then i was suprised, i started "tracert 172.16.1.5" from my Laptop in VLAN15....
And the Only Route to 172.16.1.5 is directly "172.16.1.1", but the network card has the gateway "172.16.15.1".
doesn't my trace have to go the route "172.16.15.36 -> 172.16.15.1 -> 172.16.1.1" ?