Firewall rules multi LAN



  • i am using 1.2.3-RELEASE , i was trying to set openvpn
    tcpdump shows that packets do get over to tun0 interface

    # tcpdump -i tun0 -n icmp
    tcpdump: verbose output suppressed, use -v or -vv for full protocol decode
    listening on tun0, link-type NULL (BSD loopback), capture size 96 bytes
    16:03:06.046672 IP 10.8.1.1 > xxx.xxx.xxx.xxx: ICMP echo request, id 1024, seq 58882, length 40
    16:03:11.547289 IP 10.8.1.1 > xxx.xxx.xxx.xxx: ICMP echo request, id 1024, seq 59138, length 40
    

    but they never reach the destination (possibly blocked)

    # tcpdump -i em0 -n icmp
    tcpdump: verbose output suppressed, use -v or -vv for full protocol decode
    listening on em0, link-type EN10MB (Ethernet), capture size 96 bytes
    

    I read a similar thread on this forum and the guy point that when ever he enable Captive portal , this exact behavior
    took place . but i never enable that feature ( and got no intend to ) all rules are wide open
    between LAN1/2 and out . i see nothing on the firewall logs regarding any of the VPN clients IPs being blocked .
    any help idea ?

    Regards



  • Never mind ,
    i will skip the VPN settings for now


Log in to reply