Home
Help
Search
Login
Register
OPNsense Forum
»
English Forums
»
General Discussion
»
Default deny rule is blocking my ssh connection
« previous
next »
Print
Pages: [
1
]
Author
Topic: Default deny rule is blocking my ssh connection (Read 3396 times)
AverageGuy
Newbie
Posts: 19
Karma: 0
Default deny rule is blocking my ssh connection
«
on:
November 23, 2021, 01:53:34 pm »
I used the info at
https://www.techrepublic.com/article/how-to-create-a-firewall-rule-with-opnsense/
to open ssh to a machine on my network and when I look at the logs, I see that the attempted connection is blocked with a "Default deny rule", I did a search for that error but didn't come up with anything useful. I'm very new to opnsense. This is a new install as of today. Attached is a snapshot of the entry.
Thanks,
Jim.
Logged
AverageGuy
Newbie
Posts: 19
Karma: 0
Re: Default deny rule is blocking my ssh connection
«
Reply #1 on:
November 23, 2021, 07:23:08 pm »
I've continued on and tried some other things. I've discovered an automatic rule "Default deny rule" which I'm guessing is responsible for the problem. So here's what my Port Forwarding looks like:
https://paste.pics/3b37bf6959da5ef01ac540bf8df28bdb
And here's the WAN rules that were generated automatically:
https://paste.pics/12cd60b6820973c1183d7160872e902f
Ignore the port 5060 stuff. I was able to open those ports for SIP access.
I also couldn't figure out how to upload an image. It just gave me a couple of img brackets.
This is the log entry:
https://paste.pics/dab65912e8a1236d719cedf1e4f8c152
Why is the automatically generated rule being fired?
«
Last Edit: November 23, 2021, 07:24:49 pm by AverageGuy
»
Logged
cookiemonster
Hero Member
Posts: 1823
Karma: 95
Re: Default deny rule is blocking my ssh connection
«
Reply #2 on:
November 24, 2021, 05:56:24 pm »
I can't tell too well from screenshots but I think you have set source port to ssh(22) when it should be any.
In case you haven't seenn it, this is the link to documentation
https://docs.opnsense.org/intro.html
Logged
Greelan
Hero Member
Posts: 1028
Karma: 72
Re: Default deny rule is blocking my ssh connection
«
Reply #3 on:
November 27, 2021, 06:39:01 am »
Yes, source port is wrong, and destination address should be WAN address not LAN net
Logged
AverageGuy
Newbie
Posts: 19
Karma: 0
Re: Default deny rule is blocking my ssh connection
«
Reply #4 on:
November 29, 2021, 12:34:44 pm »
Thanks, everyone. It's working now.
Jim
Logged
Print
Pages: [
1
]
« previous
next »
OPNsense Forum
»
English Forums
»
General Discussion
»
Default deny rule is blocking my ssh connection