Project

General

Profile

Actions

Bug #15210

closed

Firewall Rules not deleting

Added by Ricaardo Garcia over 1 year ago. Updated over 1 year ago.

Status:
Not a Bug
Priority:
Normal
Assignee:
-
Category:
Aliases / Tables
Target version:
-
Start date:
Due date:
% Done:

0%

Estimated time:
Plus Target Version:
Release Notes:
Default
Affected Version:
2.7.2
Affected Architecture:
All

Description

I have an issue where I believe it may be a bug in the WebGUI for the firewall filters. I previously created a filter to pass port 80 traffic. I removed the rule and still see the traffic being passed in the firewall logs. It even shows the ID reference number in the log. I do not see the firewall rule in the GUI or any other place, NAT tables etc. When dropping into the shell, I can use pfctl to pull the rules and I see the allow for port 80 in there and the id reference number. I don't see it in the config file or any other locations.


Files

Screenshot.jpg (1.15 MB) Screenshot.jpg Ricaardo Garcia, 01/28/2024 07:26 PM
Screenshot2.jpg (369 KB) Screenshot2.jpg Ricaardo Garcia, 01/28/2024 09:58 PM
Actions #1

Updated by Ricaardo Garcia over 1 year ago

I have an issue where I believe it may be a bug in the WebGUI for the firewall filters. I previously created a filter to pass port 80 traffic. I removed the rule and still see the traffic being passed in the firewall logs. It even shows the ID reference number in the log. I do not see the firewall rule in the GUI or any other place, NAT tables etc. When dropping into the shell, I can use pfctl to pull the rules and I see the allow for port 80 in there and the id reference number. I don't see it in the config file or any other locations.

Actions #3

Updated by Jim Pingle over 1 year ago

  • Status changed from New to Not a Bug

You are either not applying the rules after editing or something is preventing the filter reload from completing which leaves the old rules active.

This site is not for support or diagnostic discussion.

For assistance in solving problems, please post on the Netgate Forum .

See Reporting Issues with pfSense Software for more information.

Actions #4

Updated by Ricaardo Garcia over 1 year ago

I applied the rules after removing it. You can see in my screenshot, I even added a new rule to block port 80, to counter the absent rule from the GUI. I have reset the filter by rebooting the machine, by flushing the filter tables with pfctl. My observation is that the rule is still in one of the configuration files and is still being applied.

Actions

Also available in: Atom PDF