Home
Help
Search
Login
Register
OPNsense Forum
»
English Forums
»
General Discussion
»
Traffic blocked by "Default deny / state violation rule"
« previous
next »
Print
Pages: [
1
]
Author
Topic: Traffic blocked by "Default deny / state violation rule" (Read 3405 times)
dsduarte
Newbie
Posts: 20
Karma: 0
Traffic blocked by "Default deny / state violation rule"
«
on:
November 07, 2023, 04:35:44 am »
Hi guys...
I found some traffic been blocked on my OPNSense Firewall but I'm not sure why...
On the attached picture there is an example...
There is a LAN IP trying to reach an IP on the Internet and also there is traffic between IP's on the same subnet..
There is no rule on LAN or WAN to reject this traffic so I think by the label its due to some "state violation rule".
Can you help me to find out why these traffic is been blocked?
Thanks!
Logged
zan
Full Member
Posts: 175
Karma: 31
Re: Traffic blocked by "Default deny / state violation rule"
«
Reply #1 on:
November 07, 2023, 06:28:39 am »
Most likely out-of-state packets.
Check the blocked packets "tcpflags", if they are RA, FA, PA etc you can safely ignore those.
«
Last Edit: November 07, 2023, 08:52:00 am by zan
»
Logged
dsduarte
Newbie
Posts: 20
Karma: 0
Re: Traffic blocked by "Default deny / state violation rule"
«
Reply #2 on:
November 07, 2023, 08:36:58 am »
I have found PA and FA.... Tks!!!
Now I need to research what that means!
Logged
Print
Pages: [
1
]
« previous
next »
OPNsense Forum
»
English Forums
»
General Discussion
»
Traffic blocked by "Default deny / state violation rule"