Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Setting: Disable PF scrubbing option / issues with VPN traffic…

    Scheduled Pinned Locked Moved Firewalling
    3 Posts 2 Posters 8.6k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • V
      verbal
      last edited by

      Setting is under System > Advanced > Firewall and NAT tab.
      Disables the PF scrubbing option which can sometimes interfere with NFS and PPTP traffic.
      Default is unchecked.

      I wasn't able to connect to my work VPN. Enabled this setting and it connected perfectly.

      Had an AT&T MicroCell that wouldn't connect. Talked to AT&T and had them investigating– couldn't give much info. Unchecked this setting, rebooted the MicroCell and it connected and is working perfectly.

      Anyone know if I have any way to work this so that I don't have to check it and lose the MicroCell coverage just to connect to my work VPN, then switch it back so the MicroCell works?

      1 Reply Last reply Reply Quote 0
      • V
        verbal
        last edited by

        Noone? C'mon!

        1 Reply Last reply Reply Quote 0
        • jimpJ
          jimp Rebel Alliance Developer Netgate
          last edited by

          Some features such as MSS clamping rely on scrub being enabled.

          Without knowing more about why it did or did not work for each of those, it's impossible to say for sure what might fix it.

          Look at the ruleset in /tmp/rules.debug with scrub on and off and see what the differences are.

          Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

          Need help fast? Netgate Global Support!

          Do not Chat/PM for help!

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.