Project

General

Profile

Actions

Bug #636

closed

layer7 not work correctly

Added by Mike Stupalov over 14 years ago. Updated about 13 years ago.

Status:
Resolved
Priority:
Normal
Assignee:
-
Category:
Traffic Shaper (ALTQ)
Target version:
-
Start date:
06/01/2010
Due date:
% Done:

0%

Estimated time:
Plus Target Version:
Release Notes:
Affected Version:
2.0
Affected Architecture:

Description

Version pfSense:

Current version: 2.0-BETA2
       Built On: Tue Jun 1 00:31:58 EDT 2010

I made a rules for UDP and TCP packets on LAN interface:

Rule Proto Source  Port Destination Port         Gateway     layer7
Pass TCP   LAN net *    *           1024 - 49151 LoadBalance Block-P2P

Rule Proto Source  Port Destination Port          Gateway     layer7
Pass UDP   LAN net *    *           33000 - 49151 LoadBalance Block-P2P

and layer7 rule for block bittorent:

Block-P2P -> bittorrent, action, block

and if I try to send UDP packets through "traceroute" or "mtr -u", their firewall will block with info in the log:

Jun 1 14:44:04     ipfw-classifyd: packet dropped: not TCP or UDP
Jun 1 13:49:33     last message repeated 353 times

with bittorrent (non-SSL) continues to work.


Files

shaper-config-sinai.tacf.org-20110526075427.xml (9.02 KB) shaper-config-sinai.tacf.org-20110526075427.xml Jonathan Puddle, 05/26/2011 07:54 AM
l7shaper.xml (730 Bytes) l7shaper.xml Jonathan Puddle, 05/31/2011 02:02 AM
Actions

Also available in: Atom PDF