Navigation

    Netgate Discussion Forum
    • Register
    • Login
    • Search
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search

    Firewall issue after a recent upgrade

    Installation and Upgrades
    2
    2
    377
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • H
      heberr last edited by

      Hi There,

      I recently upgraded to PFSense CE 2.3.4-RELEASE (i386)  from a 3 year old version of PFSense and noticed the following alerts:

      Jun 7 21:16:08 php-fpm 64745 /rc.filter_configure_sync: New alert found: There were error(s) loading the rules: /tmp/rules.debug:183: unknown port 443:8172 - The line in question reads [183]: pass in quick on $WAN reply-to ( bge0 216.194.124.225 ) inet proto tcp from any to $WebServers port $WebPorts tracker 1446146908 flags S/SA keep state label "USER_RULE: Web Servers"

      The alias type is "port" and its defined name is: "Web Servers"

      Ports are as follows:

      Ports: 80:443:8172. It should only have 2 defined ports 80 & 443.

      So when I go to edit the alias to separate each port onto it own line to fix the issue the edits save successfully but as soon as I apply the changes I instantly loose connection to the firewall and I can no longer access the web interface of the firewall. At that point a few external ports stop working also.

      Does any body have any ideas on how I can correct this issue? or where To look for the error after I apply the update to the firewall alias?

      Thanks for any help.

      1 Reply Last reply Reply Quote 0
      • P
        phil.davis last edited by

        Search for WebPorts in:
        /tmp/rules.debug
        /cf/conf/config.xml

        The alias type is "port" and its defined name is: "Web Servers"

        There is some confusion there - am expecting you to have a normal IP alias WebServers and a port alias WebPorts.

        Post screenshots of the alias edit page(s) and the related rule so we can try and understand what might be happening.

        1 Reply Last reply Reply Quote 0
        • First post
          Last post

        Products

        • Platform Overview
        • TNSR
        • pfSense
        • Appliances

        Services

        • Training
        • Professional Services

        Support

        • Subscription Plans
        • Contact Support
        • Product Lifecycle
        • Documentation

        News

        • Media Coverage
        • Press
        • Events

        Resources

        • Blog
        • FAQ
        • Find a Partner
        • Resource Library
        • Security Information

        Company

        • About Us
        • Careers
        • Partners
        • Contact Us
        • Legal
        Our Mission

        We provide leading-edge network security at a fair price - regardless of organizational size or network sophistication. We believe that an open-source security model offers disruptive pricing along with the agility required to quickly address emerging threats.

        Subscribe to our Newsletter

        Product information, software announcements, and special offers. See our newsletter archive to sign up for future newsletters and to read past announcements.

        © 2021 Rubicon Communications, LLC | Privacy Policy