Traffic is blocked despite adding an exception
-
Hello.
I have rules:
but trafic from 192.168.226.2 is still blocked:
Why and what i should to do?
-
Maybe Asymmetric Routing?
Check https://docs.netgate.com/pfsense/en/latest/firewall/firewall-rule-troubleshooting.html
and
https://docs.netgate.com/pfsense/en/latest/firewall/troubleshooting-blocked-log-entries-due-to-asymmetric-routing.html-Rico
-
Thanks you Rico
Floating rules is solution :)
-
@tomaszf said in Traffic is blocked despite adding an exception:
Floating rules is solution :)
No prob not!!
Did you read the article linked article.. That screams asymmetrical traffic... Looks like 192.168.226.2 started a conversation to 10.10.2.2 (http) and 10.10.2.2 answered (syn,ack) via sending to pfsense, but pfsense never saw the syn from 192.168 to open the state..
The correct fix is to fix your asymmetrical issue, not allow non stateful traffic through.
If you draw up your network we can help you figure out why asymmetrical