Project

General

Profile

Actions

Regression #14947

closed

Rules using aliases of type ``URL (IPs)`` are not generated

Added by Remy Monsen about 1 year ago. Updated 12 months ago.

Status:
Resolved
Priority:
Normal
Assignee:
Category:
Aliases / Tables
Target version:
Start date:
Due date:
% Done:

100%

Estimated time:
Plus Target Version:
23.09.1
Release Notes:
Default
Affected Version:
2.7.1
Affected Architecture:
All

Description

After updating my Netgate 4100 box to 23.09 it started spamming notifications in the web gui every time the firewall filters are reloaded.

The exact notification reads
  • Unresolvable source alias 'alias_name' for rule 'Rule description' @ 2023-11-07 08:29:18

These aliases were all configured under 23.05.01 and worked perfectly fine there.

The main issue seems to be that the firewall is unable to find/use the alias, as the aliases themselves update from the external URL just fine.

This issue affects aliases of type 'URL (IPs)', while table aliases like 'URL Table (IPs)' are not affected by the problem.

The net result is that the firewall rules that depends on these aliases simply do not work, like locking me out from external access due to my whitelist rule no longer working, even though the alias itself still lists the whitelisted IP's, both on the alias page, an on the firewalls rule page, so it seems like the GUI picks them up just fine, it is just the actual firewall itself that doesn't.

This issue seem to have affected multiple people, as per this forum post: [[https://forum.netgate.com/topic/183882/unresolvable-source-alias-after-upgrade-to-23-09]]


Related issues

Has duplicate Bug #15002: Error 'Unresolvable destination alias' for URL alias of type URL (IPs) since PFSense 23.09Duplicate

Actions
Has duplicate Regression #15003: URL Alias cause the error "Unresolvable source alias"Duplicate

Actions
Actions

Also available in: Atom PDF