Ephemeral Port range change not taking affect.
erasedhammer last edited by erasedhammer
I have a floating firewall rule blocking some undesirable ports from going out or coming in on the WAN interface (3389, 1900, 1433, ect) but my problem is that it looks like pfsense is choosing RHPs in the registered port range.
I changed the port range through sysctl:
But my firewall rule is still catching valid connections using RHPs in the registered port range.
Here are a couple examples of the logs:
WANIP:1433 --> 18.104.22.168:53 UDP
WANIP:1900 --> 22.214.171.124:443 TCP:S
WANIP:1434 --> 126.96.36.199:443 TCP:S
WANIP:1900 --> 188.8.131.52:53 UDP