Project

General

Profile

Actions

Bug #2051

closed

Scheduled Firewall rules do not work properly

Added by Gord Schablablak over 13 years ago. Updated almost 13 years ago.

Status:
Closed
Priority:
Normal
Assignee:
-
Category:
-
Target version:
-
Start date:
12/15/2011
Due date:
% Done:

0%

Estimated time:
Plus Target Version:
Release Notes:
Affected Version:
Affected Architecture:
i386

Description

I have setup a firewall schedule on my pfSense box and the schedule works but not all of the way. I selected all days that are within the business hours which is Monday - Friday 7:00-17:30. But the firewall rule is open during the same hours on the weekends also even though it's not in my schedule that I assigned to the rule. I have gone in on the weekend to check why it is allowed and each time I see that the rule is green(Allowed) when I look in the firewall rules area. Then I go to verify the schedule and I validated that it should not be active because it is a day that is not choosen in the schedule.

I'm running the latest build:
2.0-RELEASE (i386)
built on Tue Sep 13 17:28:43 EDT 2011

I have attached some screenshots of my schedule showing my current configuration.


Files

Firewall_Schedule.jpg (44.8 KB) Firewall_Schedule.jpg Gord Schablablak, 12/15/2011 10:24 AM
Firewall_Schedule_2.jpg (67.7 KB) Firewall_Schedule_2.jpg Gord Schablablak, 12/15/2011 10:24 AM
Snap_2011-12-15_at_20.03.47.jpg (46 KB) Snap_2011-12-15_at_20.03.47.jpg Gord Schablablak, 12/15/2011 09:03 PM
Firewall_Schedule_Weekend.jpg (79.7 KB) Firewall_Schedule_Weekend.jpg Gord Schablablak, 12/18/2011 09:54 AM
Firewall_Schedule_Weekend_2.jpg (54.1 KB) Firewall_Schedule_Weekend_2.jpg Gord Schablablak, 12/18/2011 09:54 AM
Firewall_Schedule_Weekend_3.jpg (18.6 KB) Firewall_Schedule_Weekend_3.jpg Gord Schablablak, 12/18/2011 09:54 AM
Firewall_Schedule_Weekend_4.jpg (11 KB) Firewall_Schedule_Weekend_4.jpg Showing Port 9001 Firewall Rule Gord Schablablak, 12/29/2011 08:21 AM
Firewall_Schedule_Weekend_1-14-12.jpg (59 KB) Firewall_Schedule_Weekend_1-14-12.jpg Shows the rule active on a day it should not be active Gord Schablablak, 01/14/2012 03:32 PM
Firewall_Schedule_Weekend_1-14-12_-_2.jpg (21.8 KB) Firewall_Schedule_Weekend_1-14-12_-_2.jpg Shows the schedule Gord Schablablak, 01/14/2012 03:32 PM
Firewall_Schedule_Weekend_1-14-12_-_3.jpg (47.1 KB) Firewall_Schedule_Weekend_1-14-12_-_3.jpg Shows another view of the schedule Gord Schablablak, 01/14/2012 03:32 PM
Actions #1

Updated by Chris Buechler over 13 years ago

  • Status changed from New to Feedback

you sure your system time and date are correct? Schedule rules work fine in general, they're used quite a bit with no problems.

Actions #2

Updated by Gord Schablablak over 13 years ago

I did verify that the system time is correct, I attached a screenshot showing that. This weekend I will give a screen capture showing the time and the firewall port open. It opens during the correct time-frame in the day 7am - 5:30pm but the problem is that it should only do it on weekdays not on weekends.
Thank you,
-Ben

Actions #3

Updated by Chris Palmer over 13 years ago

There are several discussions on the forums about schedules you might want to ponder... Schedules work fine here. Just ask my kids... ;)

Actions #4

Updated by Gord Schablablak over 13 years ago

Please observe the attachments that are proof the scheduling does NOT work. Please look into this because I am fairly knowledgable about firewalls and networking and all signs point to this NOT working correctly.
Thanks,
-Ben

Actions #5

Updated by Chris Palmer over 13 years ago

Gord- Might I suggest you bring this issue to the forum. Im noting in your screenshots that the rule you show is 9002 yet the proof you provide goes to port 9001.

Schedules work just fine for me and many others so there must be a configuration issue those on the forum might be able to help you through.

Actions #6

Updated by Gord Schablablak over 13 years ago

I'm attaching an image of the rule that is configured for 9001. I took a screen shot of the rule for port 9002 because it was easier to get the time in the image. As you can see in the image port 9001 is configured the same way as port 9002. I really believe this is an issue with the schedules that need to be addressed.

Actions #7

Updated by Gord Schablablak over 13 years ago

I'm sorry but you can't dispute this proof that the schedule function does not work. I would really like someone to look into this if possible. I know it is not working properly.

Actions #8

Updated by Chris Palmer over 13 years ago

Gord-

Please go here http://forum.pfsense.org/index.php/board,3.0.html and let others help you through this.

Actions #9

Updated by Jim Pingle almost 13 years ago

  • Status changed from Feedback to Closed
Actions

Also available in: Atom PDF