Should FW rule counters increment?

Started by fsebera, July 02, 2021, 10:57:18 PM

Previous topic - Next topic
Hey guys, need some clarification PLEASE

A new PC requests a web page from the Internet. The traffic enters the LAN interface with destination being some Internet based web server. The FW does increments the appropriate FW LAN inbound rule.
While the traffic is allowed out the WAN interface via an outbound rule, the outbound rule is not incremented.

Should the FW increment both the LAN inbound rule as-well-as the WAN outbound rule for this traffic?
Thank you
Frank


Update:

The quick answer is NO with the assumption you don't have some jacked up configuration. ;D

How it works:
Traffic that enters the LAN interface is evaluated against the LAN rules. If the traffic is allowed to pass, the firewall sends the traffic out without consulting the outbound interface rules.

Hope this helps someone.
Frank