Firewall rules multi LAN
-
i am using 1.2.3-RELEASE , i was trying to set openvpn
tcpdump shows that packets do get over to tun0 interface# tcpdump -i tun0 -n icmp tcpdump: verbose output suppressed, use -v or -vv for full protocol decode listening on tun0, link-type NULL (BSD loopback), capture size 96 bytes 16:03:06.046672 IP 10.8.1.1 > xxx.xxx.xxx.xxx: ICMP echo request, id 1024, seq 58882, length 40 16:03:11.547289 IP 10.8.1.1 > xxx.xxx.xxx.xxx: ICMP echo request, id 1024, seq 59138, length 40
but they never reach the destination (possibly blocked)
# tcpdump -i em0 -n icmp tcpdump: verbose output suppressed, use -v or -vv for full protocol decode listening on em0, link-type EN10MB (Ethernet), capture size 96 bytes
I read a similar thread on this forum and the guy point that when ever he enable Captive portal , this exact behavior
took place . but i never enable that feature ( and got no intend to ) all rules are wide open
between LAN1/2 and out . i see nothing on the firewall logs regarding any of the VPN clients IPs being blocked .
any help idea ?Regards
-
Never mind ,
i will skip the VPN settings for now