Home
Help
Search
Login
Register
OPNsense Forum
»
Archive
»
20.1 Legacy Series
»
More weirdness with rules
« previous
next »
Print
Pages: [
1
]
Author
Topic: More weirdness with rules (Read 1675 times)
loganx1121
Full Member
Posts: 123
Karma: 0
More weirdness with rules
«
on:
April 22, 2020, 02:35:18 pm »
If I ping 4.2.2.2 from my office PC, I see the packets leave my WAN interface using the "Let anything out from firewall host itself" rule. I'm really trying to make my own rules so this floating rule phases out.
I made a rule (screen shot attached) and implemented it. Now if I ping 4.2.2.2 I see the traffic hitting the rule I made, but I stop getting icmp echo replies from the destination. Almost seems like the state table isn't taken into consideration?
Anyone have any thoughts as to why that is?
Logged
loganx1121
Full Member
Posts: 123
Karma: 0
Re: More weirdness with rules
«
Reply #1 on:
April 22, 2020, 02:46:02 pm »
I should note - this rule was created on the INET (WAN) interface. It is not a floating rule.
Logged
loganx1121
Full Member
Posts: 123
Karma: 0
Re: More weirdness with rules
«
Reply #2 on:
April 22, 2020, 06:32:34 pm »
Actually, as soon as I add my rule to the WAN interface, my internet connection dies. Meaning, I can't resolve any hostnames for websites. It's like the return traffic can't get back to me, even though I'm not seeing anything blocked coming in.
If I add the same rule to the floating rules, not specific to an interface, allowing anything from any source to anything and any destination, then everything works and the outgoing traffic seems to hit that rule.
Logged
Print
Pages: [
1
]
« previous
next »
OPNsense Forum
»
Archive
»
20.1 Legacy Series
»
More weirdness with rules