Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login
    Introducing Netgate Nexus: Multi-Instance Management at Your Fingertips.

    ICMP on openVPN flooding firewall log

    Scheduled Pinned Locked Moved Firewalling
    3 Posts 2 Posters 934 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • ? This user is from outside of this forum
      Guest
      last edited by

      Hello again!

      It started approximately 4 days ago, since then each and every second there is an entry in the firewall log of one of my pfSense boxes

      Aug 22 11:57:30  pfsense pf: 00:00:01.009987 rule 5/0(match): block in on ovpns3: (tos 0x0, ttl 64, id 4450, offset 0, flags [none], proto ICMP (1), length 84)
      Aug 22 11:57:30  pfsense pf:    >local IP  openVPN< > >LAN IP of pfSense<: ICMP echo request, id 11567, seq 19329, length 64

      The ICMP is apparently originating from the local tunnel IP of an openVPN tunnel server end wants to reach the LAN IP of the pfSense box.

      I didn't touch the config recently, as I had no time, so where does this suddenly start from?  :o

      Any input highly welcome!

      Kind regards

      chemlud

      1 Reply Last reply Reply Quote 0
      • jimpJ Offline
        jimp Rebel Alliance Developer Netgate
        last edited by

        Gateway monitoring would ping once per second, perhaps something on the side sending the ping started doing gateway monitoring with that LAN IP as a monitor IP? (Check System > Routing)

        Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

        Need help fast? Netgate Global Support!

        Do not Chat/PM for help!

        1 Reply Last reply Reply Quote 0
        • ? This user is from outside of this forum
          Guest
          last edited by

          I set up a block rule on the openVPN interface without logging. Today (after your post) I disabled the rule and the problem was gone… As I setup the box on the other side of the tunnel new (with 2.1.5) maybe the issue was resolved by that.

          But many thanx for the reply!

          chemlud

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2026 Rubicon Communications LLC (Netgate). All rights reserved.
          Privacy Policy · Cookie Policy