• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Weird bug, pfSense is blocking traffic despite rule to allow?

Firewalling
3
4
333
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • A
    archerious
    last edited by archerious Jun 14, 2020, 12:40 PM Jun 14, 2020, 12:17 PM

    Even added the easypass rule but it keeps blocking me (10.1.1.41 my PC on VLAN100) over and over again. Kicking me from my Proxmox server at 10.200.200.7 (Vlan200).

    What am I doing wrong?

    alt text

    alt text

    alt text


    Even tried modifying rule to be any any under VLAN100 and VLAN200 but pfSense is still blocking!

    alt text

    alt text

    1 Reply Last reply Reply Quote 0
    • S
      serbus
      last edited by Jun 14, 2020, 6:13 PM

      Hello!

      What do the protocol states on the blocked packets mean?

      John

      Lex parsimoniae

      1 Reply Last reply Reply Quote 0
      • M
        mcury
        last edited by Jun 14, 2020, 7:17 PM

        Do you know what is TCP three way handshake?
        Do you know what is a stateful firewall ?

        dead on arrival, nowhere to be found.

        1 Reply Last reply Reply Quote 0
        • A
          archerious
          last edited by archerious Jun 15, 2020, 7:47 AM Jun 15, 2020, 7:36 AM

          Resolved by switching Firewall Optimizing from Normal to Conservative which has stopped killing legit sessions in proxmox. It's not pfSense's fault, apparently Proxmox doesn't send headers to keep the packets alive (like say FTP). Instead Proxmox seems to play better with either Conservative mode or stateless firewalls.

          Thank you both for your time.

          1 Reply Last reply Reply Quote 0
          1 out of 4
          • First post
            1/4
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.