OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • English Forums »
  • Virtual private networks »
  • Filter over ipsec
« previous next »
  • Print
Pages: [1]

Author Topic: Filter over ipsec  (Read 485 times)

maurotb

  • Newbie
  • *
  • Posts: 21
  • Karma: 0
    • View Profile
Filter over ipsec
« on: March 04, 2022, 09:10:19 am »
Hi,
we have make a point to point ipsec tunnel, in my fw rule under ipsec i have an autogenerated rule  "IPsec internal host to host" with all ipv4/ipv6 permit for out packet.
I put this an rule with deny ip , direction in.

Remote site cannot ping my site. ok good
Now if i ping an ip to other site, opnsense make an row in state table, now remote site from this ip can ping me.
Why?
Thanks
« Last Edit: March 04, 2022, 09:38:51 am by maurotb »
Logged

  • Print
Pages: [1]
« previous next »
  • OPNsense Forum »
  • English Forums »
  • Virtual private networks »
  • Filter over ipsec
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2023 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2