Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login
    Introducing Netgate Nexus: Multi-Instance Management at Your Fingertips.

    Transparent Firewall not passing traffic

    Scheduled Pinned Locked Moved Firewalling
    8 Posts 4 Posters 1.2k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • T Offline
      theflu
      last edited by

      I built a transparent firewall to filter my works traffic. It work fine in all my test scenarios but every time I deploy it none of the traffic passes.

      Here's the route of the traffic.
      Multiple vLans come into switch
      vLans come out through a trunk
      trunk is connected to pfsense transparent firewall
      pfsesne is connected to a transparent proxy
      proxy is connected to the firewall
      the firewall routes the traffic back the way it came to the switch and out the WAN

      everything works fine when pfsense is out of the loop. When I add it all access to the net stops.

      Things I have tried:
      Delete all rules and just have allow all on all if
      Disable firewall

      1 Reply Last reply Reply Quote 0
      • T Offline
        theflu
        last edited by

        Is there a way to what rule made the block in the firewall log?

        1 Reply Last reply Reply Quote 0
        • KOMK Offline
          KOM
          last edited by

          Is there a way to what rule made the block in the firewall log?

          Click on the red X that you see under the Act column..

          1 Reply Last reply Reply Quote 0
          • T Offline
            Trel
            last edited by

            That's not helpful 100% of the time.  I don't know if that's the case in his scenario though.

            notalwayshelpful.jpg
            notalwayshelpful.jpg_thumb

            1 Reply Last reply Reply Quote 0
            • D Offline
              doktornotor Banned
              last edited by

              @Trel:

              That's not helpful 100% of the time.  I don't know if that's the case in his scenario though.

              Those are PASS IGMP packets. There is nothing blocked on the screenshot you are showing. Known bug and completely OT here.

              1 Reply Last reply Reply Quote 0
              • T Offline
                Trel
                last edited by

                @doktornotor:

                @Trel:

                That's not helpful 100% of the time.  I don't know if that's the case in his scenario though.

                Those are PASS IGMP packets. There is nothing blocked on the screenshot you are showing. Known bug and completely OT here.

                I wasn't referring to that part. I meant that clicking act section didn't actually say which rule it was.  I've had that happen for some default block rules, especially concerning IPv6.

                1 Reply Last reply Reply Quote 0
                • T Offline
                  theflu
                  last edited by

                  Is there a way to disable the default block rules in the firewall? I have added allow all rules on all my interfaces but traffic is still being blocked.

                  1 Reply Last reply Reply Quote 0
                  • KOMK Offline
                    KOM
                    last edited by

                    That's not your problem.  The rules are parsed top-down.  The default deny rule is hidden at the bottom.  Any pass rules you add will be processed before the default deny rule.  Maybe if you go into more detail about the devices, their interfaces and their network settings, this could be solved.

                    1 Reply Last reply Reply Quote 0
                    • First post
                      Last post
                    Copyright 2026 Rubicon Communications LLC (Netgate). All rights reserved.