<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Firewall rule for 67&#x2F;68 on wan inet not working]]></title><description><![CDATA[<p dir="auto">I'm having an issue with my pfsense box.<br />
The issue I'm having is that I'm losing the connection due to expiring dhcp leases. I have to manually renew the connection to reestablish my connection to my cable provider.</p>
<p dir="auto">I keep getting these</p>
<pre><code>
Blocked Jan 4 20:54:12 	WAN 	10.50.64.1:67		 255.255.255.255:68

</code></pre>
<p dir="auto">I've added the rule to wan interface</p>
<pre><code>
IPv4 UDP 	* 	67 - 68 	* 	67 - 68

</code></pre>
<p dir="auto">Yet it's still being blocked.</p>
<p dir="auto">How can I fix this?</p>
]]></description><link>https://forum.netgate.com/topic/93724/firewall-rule-for-67-68-on-wan-inet-not-working</link><generator>RSS for Node</generator><lastBuildDate>Thu, 11 Jun 2026 13:47:59 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/93724.rss" rel="self" type="application/rss+xml"/><pubDate>Tue, 05 Jan 2016 02:02:52 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Firewall rule for 67&#x2F;68 on wan inet not working on Tue, 05 Jan 2016 03:38:13 GMT]]></title><description><![CDATA[<p dir="auto">your udp 67-68 rule should be on top. Otherwise, yes (assuming the typo you already spotted has been fixed)</p>
]]></description><link>https://forum.netgate.com/post/594213</link><guid isPermaLink="true">https://forum.netgate.com/post/594213</guid><dc:creator><![CDATA[jimp]]></dc:creator><pubDate>Tue, 05 Jan 2016 03:38:13 GMT</pubDate></item><item><title><![CDATA[Reply to Firewall rule for 67&#x2F;68 on wan inet not working on Tue, 05 Jan 2016 02:59:13 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/jimp">@<bdi>jimp</bdi></a>:</p>
<blockquote>
<p dir="auto">Not really, you could uncheck that, then make an RFC1918 alias (10.0.0.0/8, 172.16.0.0/12, 192.168.0.0/16) and add a block rule under your pass rule for equivalent protection</p>
</blockquote>
<p dir="auto">Does this look correct?</p>
<p dir="auto">edit yes I caught the 192/16 block, had a typo it's been corrected.</p>
<p dir="auto"><img src="/public/_imported_attachments_/1/firewall.jpg" alt="firewall.jpg" class=" img-fluid img-markdown" /><br />
<img src="/public/_imported_attachments_/1/firewall.jpg_thumb" alt="firewall.jpg_thumb" class=" img-fluid img-markdown" /></p>
]]></description><link>https://forum.netgate.com/post/594205</link><guid isPermaLink="true">https://forum.netgate.com/post/594205</guid><dc:creator><![CDATA[Mad Professor]]></dc:creator><pubDate>Tue, 05 Jan 2016 02:59:13 GMT</pubDate></item><item><title><![CDATA[Reply to Firewall rule for 67&#x2F;68 on wan inet not working on Tue, 05 Jan 2016 02:41:22 GMT]]></title><description><![CDATA[<p dir="auto">Not really, you could uncheck that, then make an RFC1918 alias (10.0.0.0/8, 172.16.0.0/12, 192.168.0.0/16) and add a block rule under your pass rule for equivalent protection</p>
]]></description><link>https://forum.netgate.com/post/594202</link><guid isPermaLink="true">https://forum.netgate.com/post/594202</guid><dc:creator><![CDATA[jimp]]></dc:creator><pubDate>Tue, 05 Jan 2016 02:41:22 GMT</pubDate></item><item><title><![CDATA[Reply to Firewall rule for 67&#x2F;68 on wan inet not working on Tue, 05 Jan 2016 02:36:11 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/jimp">@<bdi>jimp</bdi></a>:</p>
<blockquote>
<p dir="auto">That is probably being blocked by "Block Private Networks" on the WAN interface, a custom rule won't override that.</p>
</blockquote>
<p dir="auto">I have the modem bridged so pfsense takes the public facing ip.<br />
Any harm unchecking it?</p>
]]></description><link>https://forum.netgate.com/post/594197</link><guid isPermaLink="true">https://forum.netgate.com/post/594197</guid><dc:creator><![CDATA[Mad Professor]]></dc:creator><pubDate>Tue, 05 Jan 2016 02:36:11 GMT</pubDate></item><item><title><![CDATA[Reply to Firewall rule for 67&#x2F;68 on wan inet not working on Tue, 05 Jan 2016 02:31:47 GMT]]></title><description><![CDATA[<p dir="auto">That is probably being blocked by "Block Private Networks" on the WAN interface, a custom rule won't override that.</p>
]]></description><link>https://forum.netgate.com/post/594194</link><guid isPermaLink="true">https://forum.netgate.com/post/594194</guid><dc:creator><![CDATA[jimp]]></dc:creator><pubDate>Tue, 05 Jan 2016 02:31:47 GMT</pubDate></item></channel></rss>