Legitimate UDP packets blocked



  • Dear Ladies and Gentlemen

    Here is my problem.

    This line is the first rule on the WAN interface
    0 /0 B IPv4 TCP/UDP xxx.xxx.213.14 any yyy.yyy.yyy.yyy 5060 * none
    yyy.yyy.yyy.yyy is the internal address of my PBX

    This is what I see in my Firewall log.
    X May 7 20:52:26 WAN xxx.xxx.213.14:5060 yyy.yyy.yyy.yyy:5060 UDP

    The question is why is this packet blocked by the default deny rule.

    I have tried it with UDP, TCP or TCP/UDP. According to my provider it has to be UDP.

    Any help will be greatly appreciated.

    Thank you

    Whatgives



  • Is this something you just set up, or has it been working fine until now? You've given literally as little detail as possible, so it's hard to determine what's going on. Describe the scenario, describe what you have done, post screenshots of your work (with public details blanked out).


  • LAYER 8 Global Moderator

    @whatgives said in Legitimate UDP packets blocked:

    This is what I see in my Firewall log.
    X May 7 20:52:26 WAN xxx.xxx.213.14:5060 yyy.yyy.yyy.yyy:5060 UDP

    Did you reload your rules after creating that rule - did they actually reload. Do you have any rules in floating? Did you make a typo in the source address, you have it blocked out..

    Screenshots are always better than ascii copy of the rules.

    That is a port forward you created but you didn't link the port forward to the firewall rule? Do you have multiiple "wan" interfaces where the traffic is coming in a different interface than where you created the rule... the 0/0 shows that there has not been any hits on the rule - for whatever reason?

    But without more details its not possible for use to help you ascertain the reason.


Log in to reply