Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Legitimate UDP packets blocked

    Scheduled Pinned Locked Moved Firewalling
    3 Posts 3 Posters 468 Views 3 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • W Offline
      whatgives
      last edited by

      Dear Ladies and Gentlemen

      Here is my problem.

      This line is the first rule on the WAN interface
      0 /0 B IPv4 TCP/UDP xxx.xxx.213.14 any yyy.yyy.yyy.yyy 5060 * none
      yyy.yyy.yyy.yyy is the internal address of my PBX

      This is what I see in my Firewall log.
      X May 7 20:52:26 WAN xxx.xxx.213.14:5060 yyy.yyy.yyy.yyy:5060 UDP

      The question is why is this packet blocked by the default deny rule.

      I have tried it with UDP, TCP or TCP/UDP. According to my provider it has to be UDP.

      Any help will be greatly appreciated.

      Thank you

      Whatgives

      1 Reply Last reply Reply Quote 0
      • KOMK Offline
        KOM
        last edited by

        Is this something you just set up, or has it been working fine until now? You've given literally as little detail as possible, so it's hard to determine what's going on. Describe the scenario, describe what you have done, post screenshots of your work (with public details blanked out).

        1 Reply Last reply Reply Quote 0
        • johnpozJ Offline
          johnpoz LAYER 8 Global Moderator
          last edited by

          @whatgives said in Legitimate UDP packets blocked:

          This is what I see in my Firewall log.
          X May 7 20:52:26 WAN xxx.xxx.213.14:5060 yyy.yyy.yyy.yyy:5060 UDP

          Did you reload your rules after creating that rule - did they actually reload. Do you have any rules in floating? Did you make a typo in the source address, you have it blocked out..

          Screenshots are always better than ascii copy of the rules.

          That is a port forward you created but you didn't link the port forward to the firewall rule? Do you have multiiple "wan" interfaces where the traffic is coming in a different interface than where you created the rule... the 0/0 shows that there has not been any hits on the rule - for whatever reason?

          But without more details its not possible for use to help you ascertain the reason.

          An intelligent man is sometimes forced to be drunk to spend time with his fools
          If you get confused: Listen to the Music Play
          Please don't Chat/PM me for help, unless mod related
          SG-4860 24.11 | Lab VMs 2.8, 24.11

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.