Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Ping in diagnostics pass through firewall rules

    Scheduled Pinned Locked Moved Firewalling
    4 Posts 3 Posters 485 Views 3 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S Offline
      situate
      last edited by situate

      Hi!

      I create a firewall rule to block trafic from ARC to ILO VLAN.
      I test in computer using Ping and receive Request timed out as required.
      However when i test from Ping page in PFsense the request pass. I choose source ARC and hostname a computer in ILO VLAN.

      Why PING was not blocked?

      1.png
      2.png

      1 Reply Last reply Reply Quote 0
      • RicoR Offline
        Rico LAYER 8 Rebel Alliance
        last edited by

        pfSense sees traffic as it ENTERS an Interface.
        https://docs.netgate.com/pfsense/en/latest/firewall/firewall-rule-basics.html

        -Rico

        1 Reply Last reply Reply Quote 0
        • S Offline
          situate
          last edited by

          Hi!

          Are you try to telling me that in pfsense i can not test the rule as like a router cisco?
          On cisco we can specify the source lan and if exists a block rule the ping is blocked.

          jimpJ 1 Reply Last reply Reply Quote 0
          • jimpJ Offline
            jimp Rebel Alliance Developer Netgate @situate
            last edited by

            @situate said in Ping in diagnostics pass through firewall rules:

            Are you try to telling me that in pfsense i can not test the rule as like a router cisco?
            On cisco we can specify the source lan and if exists a block rule the ping is blocked.

            That is correct. Traffic initiated from the firewall cannot enter an interface on the firewall, only exit. That kind of test can only be performed from an external system.

            Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

            Need help fast? Netgate Global Support!

            Do not Chat/PM for help!

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.