OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • Archive »
  • 18.1 Legacy Series »
  • [SOLVED]18.1 will not route to some sites and services, 17.x works fine.
« previous next »
  • Print
Pages: 1 2 3 [4]

Author Topic: [SOLVED]18.1 will not route to some sites and services, 17.x works fine.  (Read 20367 times)

slickdakine

  • Newbie
  • *
  • Posts: 12
  • Karma: 0
    • View Profile
Re: [SOLVED]18.1 will not route to some sites and services, 17.x works fine.
« Reply #45 on: March 20, 2018, 12:16:44 pm »
Hi Franco,

Thanks for the help. Sloppy didn't work, but "none" does on the default LAN firewall rule.

You have any suggestions on where to start troubleshooting what could be wrong with my network?
I didn't have this problem till the upgrade from PFsense 2.3 to 2.4. I then moved to Opnsense to see if it was any better.
Have been getting it on both platforms.

Could this be due to the FreeBSD update from 10.3 to 11.1?
If its set to "none" doesn't that disable packet inspection?

Thanks again for your help.
Logged

Davesworld

  • Full Member
  • ***
  • Posts: 133
  • Karma: 16
    • View Profile
Re: [SOLVED]18.1 will not route to some sites and services, 17.x works fine.
« Reply #46 on: March 21, 2018, 11:22:38 pm »
Quote from: franco on March 20, 2018, 07:11:07 am
Does not look like the problem described previously, which was addressed in a patch that is queued up for inclusion in 18.1.6.

Default deny usually means state tracking was too aggressive, which could be the case due to retransmits, switch gear, network loops, asymmetric traffic, etc. You can try to set your OpenVPN gateway rule to "slopply" or "none" state tracking and see if that helps.


Cheers,
Franco

OK, I missed the part about it not being included until 18.1.6. I would guess it would be best to uninstall the patch just prior to 18.1.6 when it comes?
Logged

franco

  • Administrator
  • Hero Member
  • *****
  • Posts: 13699
  • Karma: 1178
    • View Profile
Re: [SOLVED]18.1 will not route to some sites and services, 17.x works fine.
« Reply #47 on: March 22, 2018, 09:46:42 am »
Yes, 18.1.6 due to an extra round if testing. No need to do anything when it hits. Manual patches to core files are overwritten on firmware updates for consistency. You don't have to revert it again, only check whether the incoming updates (all of them) include the fix you want and skip or reapply the patch in the meantime. :)


Cheers,
Franco
Logged

  • Print
Pages: 1 2 3 [4]
« previous next »
  • OPNsense Forum »
  • Archive »
  • 18.1 Legacy Series »
  • [SOLVED]18.1 will not route to some sites and services, 17.x works fine.
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2023 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2