Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Scheduled block rule does not seem to block existing/established connections

    Scheduled Pinned Locked Moved Firewalling
    6 Posts 5 Posters 652 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S
      sultanofswing
      last edited by

      I have a scheduled block rule to block my appleTVs after midnight. However existing streams keep on playing beyond this time.

      How do i get the traffic to stop immediately?

      Thank you

      1 Reply Last reply Reply Quote 0
      • kiokomanK
        kiokoman LAYER 8
        last edited by

        you need to kill the state
        https://forum.netgate.com/topic/69331/scheduled-blocks-won-t-work-without-manual-states-reset/68?page=2

        ̿' ̿'\̵͇̿̿\з=(◕_◕)=ε/̵͇̿̿/'̿'̿ ̿
        Please do not use chat/PM to ask for help
        we must focus on silencing this @guest character. we must make up lies and alter the copyrights !
        Don't forget to Upvote with the 👍 button for any post you find to be helpful.

        S 1 Reply Last reply Reply Quote 1
        • S
          sultanofswing @kiokoman
          last edited by

          @kiokoman Is there a way to do this in GUI? I am on a NetGateSG-3100

          Looks like missing functionality.

          A 1 Reply Last reply Reply Quote 0
          • A
            akuma1x @sultanofswing
            last edited by akuma1x

            @sultanofswing It's under:

            Diagnostics -> States -> Reset States, then click the "Reset the firewall state table" box and finally click the "Reset" button.

            screenshot332354.png

            Jeff

            1 Reply Last reply Reply Quote 0
            • DerelictD
              Derelict LAYER 8 Netgate
              last edited by

              Don't use schedules on block rules. Use schedules on pass rules.

              The system has no way to kill existing states that are not passed with a scheduled rule. If a scheduled pass rule results in a created state, that rule number is added to the state. When they schedule expires the system can then kill the created states.

              Pass the traffic using a schedule for when you want it to work
              Block all matching traffic. A schedule doesn't matter here because this rule will only be hit what the scheduled pass rule doesn't match.

              Be sure this box isn't checked in System > Advanced, Miscellaneous:

              Screen Shot 2020-09-20 at 12.46.33 AM.png

              Chattanooga, Tennessee, USA
              A comprehensive network diagram is worth 10,000 words and 15 conference calls.
              DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
              Do Not Chat For Help! NO_WAN_EGRESS(TM)

              noplanN 1 Reply Last reply Reply Quote 2
              • noplanN
                noplan @Derelict
                last edited by

                @Derelict

                thank you !

                1 Reply Last reply Reply Quote 0
                • First post
                  Last post
                Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.