Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Default LAN Rule

    Scheduled Pinned Locked Moved Firewalling
    3 Posts 2 Posters 2.4k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • J Offline
      joyfulway
      last edited by

      Hi,

      With two VPN site-to-site connections running on Pfsense embedded 1.2, traffic from the remote site (dst port 80) to our mail server in the LAN of the main site is blocked by the firewall LAN interface on its way back to the remote site.

      System log gives.
      @91 block drop in log quick all label "Default deny rule

      It looks like this topic has been reported several times without any clear response.

      Any suggestion on what is going on ?

      Thanks in advance,
      Bastien

      1 Reply Last reply Reply Quote 0
      • K Offline
        kpa
        last edited by

        Are you sure that the trafic is actually blocked? It could be just this what you're seeing:

        http://doc.pfsense.org/index.php/Logs_show_%22blocked%22_for_traffic_from_a_legitimate_connection%2C_why%3F

        1 Reply Last reply Reply Quote 0
        • J Offline
          joyfulway
          last edited by

          kpa,

          thanks for your reply.

          Yes, the traffic is actually blocked by the pfsense router: i've tracked the packets using tcpdump, from the client to the pfsense to the web server (Zimbra mailserver) and back to the client through the pfsense router. This is were the packets are stopped.

          I have several applications (database and a Freecom file server) accessed by remote clients  and the connection to the Zimbra mailserver is the only one blocked on its way back.

          Thanks for your help.

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.