Weird Firewall problem while blocking External IP :(



  • Hello,

    I have been having some issues blocking people from accessing External IP addresses from my internal Wireless network.

    Before i attempt to explain my problem further i want to give a little insight on the structure of my network. I have one box with PFsense running on it acting as WAN Gateway (connects to my modem), Wired Lan and Wireless Lan network configured and enabled. Now what i am trying to do is to deny people from communicating (connecting to, Sending Pings to, etc) to a single ip address. I have read the PFsense book i bought online and tried what the book suggested with no success. I also want to add that i have searched the forums before posting my question. I even tried resetting Active connections on PFsense. Anyone have any ideal's to why i can't seem to block an external IP? You can see my firewall rule for the ip address i am trying to block for a better view on what i am trying to do.

    Thank you for your time and have a great day

    P.J

    ![Firewall Rule.jpg](/public/imported_attachments/1/Firewall Rule.jpg)
    ![Firewall Rule.jpg_thumb](/public/imported_attachments/1/Firewall Rule.jpg_thumb)


  • Rebel Alliance Developer Netgate

    If you put in a block rule but the traffic isn't being blocked then one of these things is happening:

    1. The traffic is not matching the block rule
    2. The traffic is not hitting the block rule because it's matching a rule earlier in the ruleset (move the block rule to the top)
    3. The traffic is not taking the path you think it's taking



  • Thank you jimp!

    I noticed my problem. I was test blocking my DNS ip 8.8.8.8. that for some reason did not work. I guess pfsense puts a hidden rule to allow access to the DNS server ip address even though you try blocking it in the rules. So that would be the problem i was having while testing firewall.

    Thanks for your help!

    PJ


Locked