OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • Archive »
  • 19.7 Legacy Series »
  • Firewall rule before Port-Forward not working?
« previous next »
  • Print
Pages: [1]

Author Topic: Firewall rule before Port-Forward not working?  (Read 4551 times)

Bytechanger

  • Full Member
  • ***
  • Posts: 240
  • Karma: 0
    • View Profile
Firewall rule before Port-Forward not working?
« on: May 28, 2019, 04:55:49 pm »
Hi,

I want to block all Internettraffic wich isn´t from Lets Encrypt Server to Port 80 and 443.
But my block rule seems to be ignored...

My ruleset:

[...]
                 Source                            Destination
IPv4 TCP    ! Lets_Encrypt     *    WAN address    80 (HTTP)    *    *    

(now automatic Rule from Port Forward)
IPv4 TCP    *    *    172.30.90.81    80 (HTTP)    *    *    
IPv4 TCP    *    *    172.30.90.81    443 (HTTPS)    *    *    

Is it wrong? I think, firewall ruleset are first-match. So if Traffic to Port 80 arrives, wich is not from Lets Encrypt, it will be blocked...


Greets

Byte
« Last Edit: May 28, 2019, 11:28:25 pm by Bytechanger »
Logged

  • Print
Pages: [1]
« previous next »
  • OPNsense Forum »
  • Archive »
  • 19.7 Legacy Series »
  • Firewall rule before Port-Forward not working?
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2024 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2