Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login
    Introducing Netgate Nexus: Multi-Instance Management at Your Fingertips.

    Some outgoing traffic being blocked

    Scheduled Pinned Locked Moved Firewalling
    7 Posts 4 Posters 1.6k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • J Offline
      jrote1
      last edited by

      I have setup that all outbound traffic is allowed but some is still being blocked and am unsure why this is happening. Any help would be greatly appreciated. Is also blocking incoming requests when using facetime.
      HomeLanFirewall.png
      HomeLanFirewall.png_thumb
      FirewallBlockList.png
      FirewallBlockList.png_thumb
      IncomingBlock.png
      IncomingBlock.png_thumb

      1 Reply Last reply Reply Quote 0
      • KOMK Offline
        KOM
        last edited by

        Hmm.  The rules are processed top-down and if no matching rule is found then the traffic should be blocked by the hidden Default Deny rule.  Usually the blocks you see are incoming from out-of-state traffic, but this doesn't look like that.  A packet capture might shed some light on the situation.  You have changed the default Source from * to HOME_LAN net, but I don't think that should be a problem.  You could always change it back just to check.  You're already on the HOME_LAN interface rules, so you shouldn't have to specify the source being HOME_LAN since that's all there is.

        1 Reply Last reply Reply Quote 0
        • johnpozJ Offline
          johnpoz LAYER 8 Global Moderator
          last edited by

          And you cut off the right portion of that traffic showing the protocol and state - you sure its not just out of state traffic?

          proto.png
          proto.png_thumb

          An intelligent man is sometimes forced to be drunk to spend time with his fools
          If you get confused: Listen to the Music Play
          Please don't Chat/PM me for help, unless mod related
          SG-4860 26.03.1 | Lab VMs 2.8.1, 26.03.1

          1 Reply Last reply Reply Quote 0
          • KOMK Offline
            KOM
            last edited by

            I'm guessing that this is out of state traffic from a torrent that you were running?  So many UDP packets destined for someone's cablemodem on funny ports.

            1 Reply Last reply Reply Quote 0
            • J Offline
              jrote1
              last edited by

              I have tried all the above and the traffic that is being blocked seems to be apple traffic.

              1 Reply Last reply Reply Quote 0
              • johnpozJ Offline
                johnpoz LAYER 8 Global Moderator
                last edited by

                So your saying its all syn traffic?  What did you try??  Nobody suggested you "try" anything ;)

                An intelligent man is sometimes forced to be drunk to spend time with his fools
                If you get confused: Listen to the Music Play
                Please don't Chat/PM me for help, unless mod related
                SG-4860 26.03.1 | Lab VMs 2.8.1, 26.03.1

                1 Reply Last reply Reply Quote 0
                • C Offline
                  cmb
                  last edited by

                  The LAN blocks are just out of state traffic. They stopped entirely after a big flood of them, so guessing you rebooted shortly before that flood of logs. Since that looks like it didn't continue from there, that's normal.

                  The WAN blocks, looks like it wants uPnP/NAT-PMP for Facetime possibly.

                  1 Reply Last reply Reply Quote 0
                  • First post
                    Last post
                  Copyright 2026 Rubicon Communications LLC (Netgate). All rights reserved.