Lost ability to remotely manage firewall through IPsec remote LAN interface


  • This is the error message I receive after I updating pfBlockerNG-devel to 2.2.5_34 & Suricata to 5.0.3. Both packages were updated after each other and now I cannot remotely manage pfSense via the IPsec tunnel. The firewall was rebooted, too but still gives the same error message in the logs. No other changes were made prior to upgrading and it was working perfectly before.

    I can remotely manage the FW via the remote WAN interface that I have ACL for the remote public subnets. I can manage the FW on the same remote side LAN interface via a computer there. All other IPsec traffic is working fine, it is just to the remote FW LAN interface.

    SSL_write() failed (13: Permission denied) while processing HTTP/2 connection, client: 10.10.10.205, server: 0.0.0.0:443
    

    This is connecting to 192.168.10.254.

    This is with version 2.4.5-p1.

    This snippet image is what comes up after 30 seconds or so.

    Capture.PNG


  • This happens with any web browser, too.

    Non-https web browsing works mostly fine when switched over to that mode but the status "up/no carrier" images on the Interfaces widget, the Traffic Graphs, the circle refresh symbol, etc. do not load immediately or correctly.