Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Firewall is blocking itself out?

    Scheduled Pinned Locked Moved Firewalling
    2 Posts 2 Posters 606 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S
      sebastiannielsen
      last edited by

      I have trouble with all forms of TCP Connections that are randomly dropped. Sometimes the web configurator refuse to load and I have to press F5 like 5-10 times Before the page loads.

      I then checked the firewall logs, and see the following (see attachment).

      What are really happening? Why are the firewall blocking its own reply traffic?
      (I have webconfiguratior set to HTTP, not HTTPS, the webconfigurator anti-lockout rule is in Place, and I also added a floating rule with immediate match, that tells it to permit any traffic with a source of 192.168.1.1:80 in any direction)

      Also, same problem with a VPN Client Connection over TCP, but then the firewall shows (Black Arrow) WAN, and then the WAN source IP, and then the destination IP for the site-to-site VPN server.

      Seems like trouble with "RELATED, ESTABLISHED" and states.
      blocklock.png
      blocklock.png_thumb

      1 Reply Last reply Reply Quote 0
      • D
        doktornotor Banned
        last edited by

        https://doc.pfsense.org/index.php/Why_do_my_logs_show_%22blocked%22_for_traffic_from_a_legitimate_connection

        1 Reply Last reply Reply Quote 0
        • First post
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.