Navigation

    Netgate Discussion Forum
    • Register
    • Login
    • Search
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search

    Getting hundreds of 'block drop in log all label "Default deny rule"'

    Firewalling
    2
    3
    2273
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • G
      geoff.sim last edited by

      I am running pfSense within VMware, connected to a router in modem-mode, using ppoe.
      There are two switches between pfSense and the modem.

      My firewall is reporting hundreds of,

      @1 scrub on em1 all fragment reassemble
      @1 block drop in log all label "Default deny rule"

      These are happening every few seconds.

      Can anyone point me in the right direction?

      I guess one of the questions is, where is this "Default deny rule", and can I turn off the firewall temporarily?

      1 Reply Last reply Reply Quote 0
      • G
        geoff.sim last edited by

        ok, so it's normal for a stateful firewall  ::)

        http://forum.pfsense.org/index.php/topic,14259.0.html

        It just makes it difficult IMHO to see proper firewall issues in amongst all this "harmless" noise.
        Maybe better filtering options could help here.

        1 Reply Last reply Reply Quote 0
        • jimp
          jimp Rebel Alliance Developer Netgate last edited by

          2.1 has a lot better filtering in the firewall log.

          You can also add your own block rules without log set to match traffic that you don't want to see in the logs.

          1 Reply Last reply Reply Quote 0
          • First post
            Last post

          Products

          • Platform Overview
          • TNSR
          • pfSense
          • Appliances

          Services

          • Training
          • Professional Services

          Support

          • Subscription Plans
          • Contact Support
          • Product Lifecycle
          • Documentation

          News

          • Media Coverage
          • Press
          • Events

          Resources

          • Blog
          • FAQ
          • Find a Partner
          • Resource Library
          • Security Information

          Company

          • About Us
          • Careers
          • Partners
          • Contact Us
          • Legal
          Our Mission

          We provide leading-edge network security at a fair price - regardless of organizational size or network sophistication. We believe that an open-source security model offers disruptive pricing along with the agility required to quickly address emerging threats.

          Subscribe to our Newsletter

          Product information, software announcements, and special offers. See our newsletter archive to sign up for future newsletters and to read past announcements.

          © 2021 Rubicon Communications, LLC | Privacy Policy