• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Rules: Block all 443 except for some IP

Scheduled Pinned Locked Moved Firewalling
3 Posts 2 Posters 502 Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • K
    kapi2454
    last edited by Jun 3, 2017, 7:55 PM

    Hi peolple!
    I need some help, I need to block all web browser.
    So I add this rule and work Fine, late I have to make an exception for google drive sinc.
    I add other Googoe IP for testing, 64.233.190.132. But the pass rule doesn't work :(

    This is the alias

    1 Reply Last reply Reply Quote 0
    • H
      Harvy66
      last edited by Jun 5, 2017, 12:20 PM

      How do you know the rule it's working? Have you had the client machine connect to the IP addresses that your firewall is trying to allow? More than likely, the client is getting back a different set of IP(s) for their DNS record than your firewall.

      1 Reply Last reply Reply Quote 0
      • K
        kapi2454
        last edited by Jun 5, 2017, 12:30 PM

        Thank for answer.
        If I apply only the block rule. Google Drive sync tools stop working. And if I open the web browser. The page doesn't work.  But for example TeamViewer and other tools keep working normally. It's means that the block on  443 port is working on that IP.

        When I active the rule for pass some IP it doesn't work. I do a IP config /flushdns and only use an Google IP on web browser.

        The rules on pfsense work like iptable? From the first top to bottom ?

        1 Reply Last reply Reply Quote 0
        1 out of 3
        • First post
          1/3
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
          This community forum collects and processes your personal information.
          consent.not_received