Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Various sites and services being blocked - how to fix?

    Scheduled Pinned Locked Moved Firewalling
    130 Posts 5 Posters 24.4k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S
      serbus @Elmojo
      last edited by

      @elmojo

      There was a link to the Netgate docs in the post I referenced that had some good troubleshooting info, but that link appears to be broken.

      Here is the current link :

      https://docs.netgate.com/pfsense/en/latest/troubleshooting/log-filter-blocked.html

      It may help you explore the state issues.

      John

      Lex parsimoniae

      E 1 Reply Last reply Reply Quote 0
      • E
        Elmojo @serbus
        last edited by

        @serbus Yeah, I read that page previously.
        I'm pretty sure my issue is asymmetric routing, but I haven't found anything yet that explains it in a way I can understand, or says how to actually fix it. The link on that troubleshooting page says there's an "automatic fix", which I've tried, without success. I don't have any static routes in place, so that option doesn't seem to apply anyway. Perhaps adding static routes is the answer, but I don't know what that is or how to invoke it.

        I'm really hoping someone can help me track this down.
        I'm so close to a working network here, but as it stands at the moment, I still can't access certain critical things I need, some of which (eg. my copier GUI) are within my LAN.

        GertjanG 1 Reply Last reply Reply Quote 0
        • GertjanG
          Gertjan @Elmojo
          last edited by

          @elmojo

          Your Desktop PC CADZilla uses a cable connection. Has it also Wifi ? And if so : de activate it.

          No "help me" PM's please. Use the forum, the community will thank you.
          Edit : and where are the logs ??

          E 1 Reply Last reply Reply Quote 0
          • E
            Elmojo @Gertjan
            last edited by

            @gertjan No, it's wired connection only.

            ? 1 Reply Last reply Reply Quote 0
            • ?
              A Former User @Elmojo
              last edited by

              @elmojo, Merry Christmas, sorry not to be able to enter earlier, I agree that I am going to send your contact information to verify your pfsense, is everything ready? or even need help.

              E 1 Reply Last reply Reply Quote 0
              • E
                Elmojo @A Former User
                last edited by

                @silence Good morning! I think you are offering remote help, right?
                What sort of access to my network would you have? I don't mean to sound untrusting, but because of the work I do, I'm not allowed to give any outside person or entity access to any of my systems or internal network. I can allow access to the pfsense system, if that's what you are suggesting. How would we do it? What sort of connection or software?
                I would really appreciate any help!

                ? 1 Reply Last reply Reply Quote 0
                • ?
                  A Former User @Elmojo
                  last edited by

                  @elmojo, anydesk.

                  E 1 Reply Last reply Reply Quote 0
                  • E
                    Elmojo @A Former User
                    last edited by

                    @silence Sorry, that would give you access to my desktop and network. I can't allow that. :(
                    Thanks so much for the offer, though. I'm so close to getting this sorted out!

                    ? 1 Reply Last reply Reply Quote 0
                    • ?
                      A Former User @Elmojo
                      last edited by

                      @elmojo, If you want you can allow access only in pfsense (creating a rule in your wan like this for example) Firewall> rules> Wan> Permit 190.166.216.65

                      d5817573-7de3-4bb1-91da-03873f2e9d59-image.png

                      E 1 Reply Last reply Reply Quote 0
                      • E
                        Elmojo @A Former User
                        last edited by

                        @silence What would that "permit"? Is that 190.166 address your public IP, or just an example?
                        I'm sorry, I don't follow what that rule would do. I'm game to try it if it gives you access to only the pfsense box, but I don't see how it would work. Sorry, it's Monday and I'm slow. Besides, I'm learning all this from scratch. Please be patient with me. 🙄

                        ? 1 Reply Last reply Reply Quote 0
                        • ?
                          A Former User @Elmojo
                          last edited by

                          @elmojo, yes my WAN IP PUBLIC !

                          Only Acess Remote to you pfsense (website)

                          I would need you to create a user just to monitor your firewall logs.

                          E 1 Reply Last reply Reply Quote 0
                          • E
                            Elmojo @A Former User
                            last edited by

                            @silence Ok, cool. Let's give it a shot. One minute, let me set up the rule.

                            ? 1 Reply Last reply Reply Quote 0
                            • ?
                              A Former User @Elmojo
                              last edited by

                              @elmojo, take a screenshot of the new username and password for me but don't send me the link.

                              E 1 Reply Last reply Reply Quote 0
                              • E
                                Elmojo @A Former User
                                last edited by Elmojo

                                @silence sorry for the delay, was on the phone with my office.
                                I have no idea if I did the user right. Let me know.

                                ? 1 Reply Last reply Reply Quote 0
                                • ?
                                  A Former User @Elmojo
                                  last edited by A Former User

                                  @elmojo, Now Need View Firewall Logs

                                  25ea498c-9d27-404a-885f-827aa1cb5758-image.png

                                  E 1 Reply Last reply Reply Quote 0
                                  • E
                                    Elmojo @A Former User
                                    last edited by

                                    @silence WAN rules 2.jpg

                                    How do I assigned you to the page?
                                    I don't see any options in the user management...

                                    ? 1 Reply Last reply Reply Quote 0
                                    • ?
                                      A Former User @Elmojo
                                      last edited by

                                      This post is deleted!
                                      E 1 Reply Last reply Reply Quote 0
                                      • E
                                        Elmojo @A Former User
                                        last edited by

                                        @silence Done, try now.

                                        ? 1 Reply Last reply Reply Quote 0
                                        • ?
                                          A Former User @Elmojo
                                          last edited by

                                          This post is deleted!
                                          E 1 Reply Last reply Reply Quote 0
                                          • E
                                            Elmojo @A Former User
                                            last edited by

                                            @silence Done. Is it working now?
                                            I'm okay with you having dashboard access temporarily.
                                            I just can't give you full network access. I trust that you won't jack up my configuration too badly and lock me out or anything. :)

                                            ? 2 Replies Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.