In/Out traffic from Pfsense box gets blocked after 10 seconds [SOLVED]
-
Hi,
We're operating with 2 pfsense servers with one 32bit & one recently upgraded to 64bit boxes with CARP setup.
First time I noticed that the OpenVPN traffics were dropping after few seconds: WAN side was ok, however, LAN side traffics gets disconnected. Also, the ssh & web interface traffic to the 64bit pfSense box also gets disconnected.
So, I tried to solve it with the Asymmetric Routing solution: turn on "Bypass firewall rules for traffic on the same interface." However, it didn't work.
I've also turned on "State Killing on Gateway Failure" & "Skip rules when gateway is down." They didn't work either.
Then, I tried to add all flag any pass TCP rules for both of Floating & LAN. After this, OpenVPN traffics seems ok & work flawless to other hosts. However, ssh & web interface traffic In/Out of pfSense box still gets disconnected after about 10 seconds.
So, I'm out of option right now. Please help me to solve the problem.
Thanks.
–-----------------
Solved it by: changing the LAN pass TCP state rules to sloppy state.
Anybody has explanation to this behavior, it would be much appreciated.