Home
Help
Search
Login
Register
OPNsense Forum
»
Archive
»
20.7 Legacy Series
»
Firewall rule being ignored
« previous
next »
Print
Pages: [
1
]
Author
Topic: Firewall rule being ignored (Read 1759 times)
cogumel0
Newbie
Posts: 7
Karma: 0
Firewall rule being ignored
«
on:
December 21, 2020, 01:37:27 pm »
I've got my firewall configured with a allow all IPv4 traffic to non-private address spaces (10.0.0.0/8, 172.16.0.0/12, 192.168.0.0/16) as seen in the picture below.
Yet, despite that, a particular non-private address space IP address seems to be getting caught by the default deny rule and I can't explain why. Have a look at these logs in the second picture.
Why is it that that particular IP is not getting matched by the allow non-PAS traffic?? And why only that particular IP?! Why is it getting matched by the default deny rule?
«
Last Edit: December 21, 2020, 01:39:34 pm by cogumel0
»
Logged
chemlud
Hero Member
Posts: 2485
Karma: 112
Re: Firewall rule being ignored
«
Reply #1 on:
December 21, 2020, 02:17:04 pm »
Hard to say without more info, best guess: out-of-state traffic. As usual, i.e. once a week now in these forums...
Logged
kind regards
chemlud
____
"The price of reliability is the pursuit of the utmost simplicity."
C.A.R. Hoare
felix eichhorns premium katzenfutter mit der extraportion energie
A router is not a switch - A router is not a switch - A router is not a switch - A rou....
cogumel0
Newbie
Posts: 7
Karma: 0
Re: Firewall rule being ignored
«
Reply #2 on:
December 21, 2020, 02:50:56 pm »
chemlud, what more info do you require?
Logged
chemlud
Hero Member
Posts: 2485
Karma: 112
Re: Firewall rule being ignored
«
Reply #3 on:
December 21, 2020, 03:55:09 pm »
Have a look at the status flags of your blocked packages. ;-) And search the webs for out-of-state traffic...
Logged
kind regards
chemlud
____
"The price of reliability is the pursuit of the utmost simplicity."
C.A.R. Hoare
felix eichhorns premium katzenfutter mit der extraportion energie
A router is not a switch - A router is not a switch - A router is not a switch - A rou....
Print
Pages: [
1
]
« previous
next »
OPNsense Forum
»
Archive
»
20.7 Legacy Series
»
Firewall rule being ignored