BLOCK ICMP ON WAN INTERFACES

Started by bhillcv, September 30, 2025, 12:25:20 AM

Previous topic - Next topic
Hello.
I have a question, although it is very basic, I was unable to configure it.

How do I block ICMP Ping on OpnSense WAN interfaces.

I have already created a block All rule for the ICMP protocol, but I still continue to receive pings on the WAN interfaces.

If we get suricata working you can do it in that also, there are a couple rules to enable
May be able to search ICMP and find them.
NOTE... Some things may stop working that use pings once in a while. Seen it a couple times, its rare.
Browser sometimes, mozilla and google. Dont know why they use icmp when a simple packet would do.

There are different ICMP packets, probably have to specify which type icmp you want to block

Context matters indeed, because e.g. ICMPv4 is blocked by default...


Cheers,
Franco