Firewall log showing blocked outgoing WAN packets
-
Running 2.1.4 on my home Alix box.
For some reason, after disabling and re-enabling the "block private networks" option for the WAN interface, the firewall log started getting flooded with entries of outgoing (with the arrow) packets blocked on WAN. Mostly random TCP:FPA packets to Google or other web traffic generated by my client's browsers.
No other options were changed and up till 1 hour ago this was not happening. Is there a way to disable this behavior? On the WAN I only want to see the incoming traffic blocked.
Thanks.
-
Since you just made an adjustment to the firewall, I suspect you may be just seeing leftover connections that lost their states. They should go away on their own, but you can try rebooting your clients, then the firewall, to see if that clears it up. More here: https://doc.pfsense.org/index.php/Logs_show_%22blocked%22_for_traffic_from_a_legitimate_connection,_why%3F
No other options were changed and up till 1 hour ago this was not happening. Is there a way to disable this behavior? On the WAN I only want to see the incoming traffic blocked.
When you say "see" do you mean disable logging for the default rule?
https://doc.pfsense.org/index.php/Firewall_Logs#Disable_Default_Block_Logging