Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    New VLAN & Firewall rules but no traffic, how to resolve?

    Firewalling
    3
    3
    445
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • L
      luke1018
      last edited by

      Dear Experts, i am facing some difficulties. Originally, I have one WAN and LAN and monitoring them using Suricata. But now, we would like to expand the monitoring to more VLANs, and I am trying to add 3 more with firewall rules opened.

      Unfortunately, after awhile I still not able to see any traffic flowing through. Is there any configuration I missed out? like entering the IP address we wish to monitor? or firewall rules is blocking or could it be logging is not turn on and configured properly?

      ![Suricata_Firewall rules.PNG](/public/imported_attachments/1/Suricata_Firewall rules.PNG)
      ![Suricata_Firewall rules.PNG_thumb](/public/imported_attachments/1/Suricata_Firewall rules.PNG_thumb)

      1 Reply Last reply Reply Quote 0
      • G
        GoldFish
        last edited by

        @luke1018:

        could it be logging is not turn on and configured properly?

        Logging has nothing to do with the states data that you see in that screenshot. Logging is referring to System Logs. 0/0B simply means there is no packet hitting that rule.

        • pfSense Enthusiast *
        1 Reply Last reply Reply Quote 0
        • johnpozJ
          johnpoz LAYER 8 Global Moderator
          last edited by

          Seems you have nothing on this vlan if your top rule any any has not hits… With that 0/0 but without seeing the rest of rule its not possible to tell if they would of actually triggered.. Since can not see the dest side of the rule.. But pretty much anything below an any source is kind of pointless -- depending on the dest..

          An intelligent man is sometimes forced to be drunk to spend time with his fools
          If you get confused: Listen to the Music Play
          Please don't Chat/PM me for help, unless mod related
          SG-4860 24.11 | Lab VMs 2.7.2, 24.11

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.