[SOLVED] Block rule not working on Wyze cameras somehow?

Started by ideal2545, December 05, 2023, 08:36:12 AM

Previous topic - Next topic
December 05, 2023, 08:36:12 AM Last Edit: December 06, 2023, 11:08:19 AM by ideal2545
I have a few cameras around the house that I wanted to block from having internet access so I created a simple rule:

1) Alias listing IP's of the cameras
2) LAN Firewall Rule that blocks the alias list.

I tested this by sticking my iphone's ip address on it and yes it cannot access the internet.
I enabled firewall logs on the block rule and I see that traffic is being blocked per IP
BUT somehow when i get my iphone off of my local wifi and onto cellular and launch the Wyze app, somehow I am still getting the camera feed?

I feel like im taking crazy pills can someone check me? Attached pics of the setup.



Did you purge the state table after adding new rule?
Also are you 100% sure those IPs are being assigned to the cameras?
As mentioned above, do you have enabled IPv6?
Do you have maybe a general permit In rule in the floating rules?

Regards,
S.
Networking is love. You may hate it, but in the end, you always come back to it.

OPNSense HW
APU2D2 - deceased
N5105 - i226-V | Patriot 2x8G 3200 DDR4 | L 790 512G - VM HA(SOON)
N100   - i226-V | Crucial 16G  4800 DDR5 | S 980 500G - PROD

Looks like purging the state table did the trick, havent had to do that before - thanks a bunch for the sanity check and advice :)

December 06, 2023, 10:47:11 AM #4 Last Edit: December 06, 2023, 10:49:17 AM by Seimus
Yea the state table purge is mandatory. If I remember correctly either on documentation or on forum is mentioned to do that if you implement new rules or reposition rules. This is due to the fact that Rules are checked in order so like per order per index. If you dont purge the table after you moved a rule you may hit a weird behavior.

Also please adjust your thread with [SOLVED], so the forum is a bit clean ;)

Regards,
S.
Networking is love. You may hate it, but in the end, you always come back to it.

OPNSense HW
APU2D2 - deceased
N5105 - i226-V | Patriot 2x8G 3200 DDR4 | L 790 512G - VM HA(SOON)
N100   - i226-V | Crucial 16G  4800 DDR5 | S 980 500G - PROD