Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Floating Rules Reordering On Their Own (Non-pfB autorules)

    Scheduled Pinned Locked Moved Plus 24.11 Development Snapshots (Retired)
    6 Posts 3 Posters 542 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • N
      nintendo424
      last edited by

      Hello there,

      I'm trying to set up some Alias Native rules in my Floating Rules in pfSense. I do not use pfBlocker's auto rules at all, as I like to control the rules individually myself.

      I seem to have run into an issue where my floating rules seemingly reorder themselves once a certain number is reached. See my screenshots below.

      Before adding too many:
      d7b2600a-f310-4555-bdff-539b04a920bf-image.png

      Note my limiter at the bottom, and the block/reject rules above.

      After adding 13 or so, the rules reorder themselves and I cannot get them to maintain their order:
      ef33960b-ee2f-439a-a8b0-c9fe121e21bd-image.png

      I can rearrange and save the rules but they do not maintain their order until after I delete a rule or two.

      As I stated all of my IP rules are set to Alias Native in pfblocker so I shouldn't need to be concerned with the auto ordering here.

      Is this a legitimate bug?
      Just a note, I tried this on both 24.03 and 24.11 beta/RC.

      1 Reply Last reply Reply Quote 0
      • M
        marcosm Netgate
        last edited by

        Does it persist after a reboot? Are there changes being made from different logins/tabs?

        N 1 Reply Last reply Reply Quote 0
        • N
          nintendo424 @marcosm
          last edited by

          @marcosm
          Yes, it does persist after a reboot. I double checked the config xml file and the rules get reordered there as well.

          I made sure to only have one tab open, and even cleared my cookies/cache and tried a different browser with the same outcome.

          1 Reply Last reply Reply Quote 0
          • stephenw10S
            stephenw10 Netgate Administrator
            last edited by

            So to be clear you are also seeing that happen in 24.03?

            And do you have MIM enabled in 24.11?

            N 1 Reply Last reply Reply Quote 0
            • N
              nintendo424 @stephenw10
              last edited by

              @stephenw10 Yes, that's correct. I upgraded to the beta initially to see if that would fix the issue, deleted my rules, and retired which led to the same result.

              I do not use MIM, I currently only have a single instance running on bare metal locally.

              1 Reply Last reply Reply Quote 1
              • M
                marcosm Netgate
                last edited by

                deleted my rules

                Which rules - the same rules, or all rules on all interfaces?

                It shouldn't make a difference, but are there existing rules in /cf/conf/config.xml which use an interface that doesn't exist?

                Are you able to reproduce this starting from a fresh configuration? If so, would you provide exact steps?

                1 Reply Last reply Reply Quote 0
                • First post
                  Last post
                Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.