Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    FW rules keeping established connections

    Scheduled Pinned Locked Moved Firewalling
    5 Posts 2 Posters 661 Views 2 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • P Offline
      pedreter
      last edited by

      Hi all,

      When FW rules are applied, Is it possible somehow to decide whether to keep already established connections or Drop them?

      Thanks...

      Pet.

      M 1 Reply Last reply Reply Quote 0
      • M Offline
        mer @pedreter
        last edited by

        @pedreter
        I'm not sure of exactly how pfSense is applying the rules, but typically in "raw pf" you'd use pfctl command. My understanding is you need to explicitly flush states and other constructs.
        To the best of my understanding, pfSense does not flush existing states nor is there an option to choose flush or not.

        1 Reply Last reply Reply Quote 0
        • P Offline
          pedreter
          last edited by

          Out of curiosity...

          this does not tells much about myself but... ¿what is the default? keeping existing or dropping?

          Pet.

          M 1 Reply Last reply Reply Quote 0
          • M Offline
            mer @pedreter
            last edited by

            @pedreter to the best of my knowledge it should keep existing by default.
            To flush the states (drop existing connections) I think it's under Diagnostics, States then look for a "Reset States".

            P 1 Reply Last reply Reply Quote 0
            • P Offline
              pedreter @mer
              last edited by

              Thanks a lot, @mer !!!

              1 Reply Last reply Reply Quote 1
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.