PfSense Firewall Schedules and Active Firewall States
-
Hello,
I'm in need of using Firewall schedules to set access to a network VLAN for a given timeframe. I want to ensure that active states on this firewall rule are terminated as well when the Schedule is triggered, which I understand is the default pfSense behavior. Under the Advanced settings in pfSense 2.0.3, I see "By default schedules clear the states of existing connections when expiry time has come. This option overrides that behavior by not clearing states for existing connections."
Does this mean that ALL active states on the firewall are terminated when the scheduled is triggered or ONLY for the particular rule the schedule applies to? I need to ensure that I'm not causing disruptions on the other networks by completely clearing all states to satisfy the Schedule requirements for a single network. This would be very bad.
Can anyone confirm what happens in this case?
Thank you,
J -
In the absence of a restricting qualification, I would take it that states of ALL existing connections are cleared. However I have no experience of what actually happens.
-
Does anyone know for sure how this feature works? Need to confirm. Thank you
-
Scheduled rules go under a label in pf for that schedule. When the time comes, only states labeled for that schedule are killed.