Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Firewall error, "proto 0 cannot be used"

    Scheduled Pinned Locked Moved Firewalling
    4 Posts 2 Posters 411 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • P
      pecker88
      last edited by pecker88

      2.4.4_3, just started receiving this error, no firewall rule changes were made. The 204.x IP that's listed in the log error is the ISP gateway IP, the IP that's assigned by the ISP is static.

      There were error(s) loading the rules: /tmp/rules.debug:183: proto 0 cannot be used - The line in question reads [183]: pass  in  quick  on $WAN reply-to ( igb0 204.x.x.x ) inet proto ip  from any to any tracker 1562989607 keep state  label "USER_RULE: Easy Rule: Passed from Firewall Log View"
      

      Anyone have any advice?

      1 Reply Last reply Reply Quote 0
      • DerelictD
        Derelict LAYER 8 Netgate
        last edited by

        Looks like you added an easy rule somehow.

        Firewall > Rules, WAN. Find that rule and disable it.

        Try to think back how that rule was added (usually from the firewall logs) and if it can be duplicated it can be fixed.

        Chattanooga, Tennessee, USA
        A comprehensive network diagram is worth 10,000 words and 15 conference calls.
        DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
        Do Not Chat For Help! NO_WAN_EGRESS(TM)

        1 Reply Last reply Reply Quote 0
        • P
          pecker88
          last edited by

          I found that rule, disabled it and the messages are gone.
          But, but definitely did not click the button in the log to add it, Weird.

          thanks for the help.

          DerelictD 1 Reply Last reply Reply Quote 0
          • DerelictD
            Derelict LAYER 8 Netgate @pecker88
            last edited by

            @pecker88 said in Firewall error, "proto 0 cannot be used":

            But, but definitely did not click the button in the log to add it, Weird.

            Someone did. Glad you found it.

            Chattanooga, Tennessee, USA
            A comprehensive network diagram is worth 10,000 words and 15 conference calls.
            DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
            Do Not Chat For Help! NO_WAN_EGRESS(TM)

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.