Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Names in Rules and logs etc

    Scheduled Pinned Locked Moved General pfSense Questions
    10 Posts 3 Posters 1.8k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • W
      wifiuk
      last edited by

      In my Firewall rules i have stuff like xx.xx.0.0/16

      and some IP's for things.

      The destination ALIAS will allow me to have named things in there like PC1 NAS TV etc…

      But i cant seem to have names for SOURCE IP's ... am i missing something

      Like my work IP, i would like to say MY WORK rather than the IP....

      Also in the Firewall logs, can it say my ISP instead of the IP address....

      Am i missing something ?

      1 Reply Last reply Reply Quote 0
      • KOMK
        KOM
        last edited by

        I use Aliases for Source IPs.  What's the problem?

        1 Reply Last reply Reply Quote 0
        • W
          wifiuk
          last edited by

          i have aliases setup for source IP's but in my port forwarding and firewall logs etc

          they show up as the source IP and not as the alias i have setup

          It seems to be ok for internal address's but i would like to have it see that that external source ip xx.xx.xx.x.. is actually "My Work Gateway" hitting my firewall

          ![Untitled picture.png_thumb](/public/imported_attachments/1/Untitled picture.png_thumb)
          ![Untitled picture.png](/public/imported_attachments/1/Untitled picture.png)
          ![Untitled picture2.png](/public/imported_attachments/1/Untitled picture2.png)
          ![Untitled picture2.png_thumb](/public/imported_attachments/1/Untitled picture2.png_thumb)

          1 Reply Last reply Reply Quote 0
          • KOMK
            KOM
            last edited by

            You can use aliases for your port-forward Source.  If you create the port-forward and refer to your alias, it will appear in the rule list.

            pf.png
            pf.png_thumb

            1 Reply Last reply Reply Quote 0
            • W
              wifiuk
              last edited by

              thanks i was being a knob then :)

              lol cheers all resolved now

              1 Reply Last reply Reply Quote 0
              • W
                wifiuk
                last edited by

                actually in the firewall logs …...

                it still says Source and then the IP even though that IP range falls under an ALIAS range.....

                Have i missed something else ?

                1 Reply Last reply Reply Quote 0
                • KOMK
                  KOM
                  last edited by

                  Firewall logs don't use the aliases as far as I know.

                  1 Reply Last reply Reply Quote 0
                  • W
                    wifiuk
                    last edited by

                    thats a shame, it would save me a lot of time when i can quickly look at the logs and say hey, why is my work network hitting that port on my firewall ?

                    Is there a section we can request a feature to add alias look up in the firewall logs?

                    1 Reply Last reply Reply Quote 0
                    • KOMK
                      KOM
                      last edited by

                      The best you can manage so far is to look at your Firewall log and click the small blue info circle next to each IP address.  That will do a resolve on the spot, but only for that one entry.

                      You've already managed to find the Feedback forum, and I don't know of another place for feature suggestions.

                      1 Reply Last reply Reply Quote 0
                      • C
                        cmb
                        last edited by

                        The logs show what rule matched, and you want to see the specific source IP, you don't want the alias name there. You can tell from the rule it shows which alias it hit. There is reverse DNS lookup support there as well.

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.