Awkward behaviour Default Block in interVLAN

Started by doppiaemme, April 04, 2024, 01:23:54 PM

Previous topic - Next topic
Hi all
mine is a simple home installation, with a Service VLAN where I host services and a User VLAN where all the user device stay.

I am trying to simply access an SMB NAS server on the Service VLAN from the user User VLAN.
What happens is that I manage to access the drive and see the directories, I even manage to start the file transfer, but then it drops aftes about 20 sec.
From the log I can see that it firsts hits the Default Allow Rule but then after those 20 seconds it hits the Default Deny Rule.
I cannot explain that as SRC, DST, ports etc should be identical!

I am running 24.1.2_1 on an ESXi server... VLANs are implemented via the vSwitch.

Unless I am missing something clearly obvious,
I am wondering whether there is something weird caused by the hypervisor setup rather.

any help woudl be much appreciated!

Attached a picture side by side with the ALLOWED VS DENIED hit.

Most probably a case of asymmetric routing. Make sure packets travel the same way in both directions.
Deciso DEC750
People who think they know everything are a great annoyance to those of us who do. (Isaac Asimov)

Quote from: Patrick M. Hausen on April 04, 2024, 01:59:03 PM
Most probably a case of asymmetric routing. Make sure packets travel the same way in both directions.

Patrick, that was the greatest hint!
it was indeed the SMB server set with the old Default Gateway which was still active!
fixed the asymmetric routing it solved it!

thanks a LOT!