Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Should "Reserved Networks" be blocked when pfSense is behind an ISP router?

    Firewalling
    firewall bogon
    3
    3
    1.1k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • gnitingG
      gniting
      last edited by

      If my pfSense device is behind an ISPs router (which also has its own (most likely crap) firewall) then should I still be blocking reserved networks using these settings in the WAN interface:

      • Block private networks and loopback addresses
      • Block bogon networks

      Both of these generate a lot of log data, like the one in the attached screenshot, so I am wondering if it's ok to turn these off since pfSense is not directly on the Internet?

      log data

      1 Reply Last reply Reply Quote 0
      • KOMK
        KOM
        last edited by

        All traffic is blocked & logged by WAN by default. That setting will also block private networks from accessing any NATs you may have configured. Either ignore the noise. or create your own block rule and set it to not log.

        1 Reply Last reply Reply Quote 0
        • johnpozJ
          johnpoz LAYER 8 Global Moderator
          last edited by

          That is multicast noise most likely from your router it self, ie that 192.168.1.1, which seems odd that is being block by the ULA rule fc00::/7 ?

          If you do not want the noise, and your behind a nat.. Then either turn off logging of those rules.. Or create rules that specifically block the noise but don't log it.

          An intelligent man is sometimes forced to be drunk to spend time with his fools
          If you get confused: Listen to the Music Play
          Please don't Chat/PM me for help, unless mod related
          SG-4860 24.11 | Lab VMs 2.7.2, 24.11

          1 Reply Last reply Reply Quote 1
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.