Project

General

Profile

Actions

Correction #9618

closed

Feedback on System Monitoring — Firewall Logs

Added by Louis B almost 5 years ago. Updated over 3 years ago.

Status:
Resolved
Priority:
Normal
Assignee:
Category:
Logging
Target version:
-
Start date:
07/07/2019
Due date:
% Done:

0%

Estimated time:

Description

Page: https://docs.netgate.com/pfsense/en/latest/monitoring/logs/firewall.html

Feedback:
- I assume that an Arrow in the interface field indicates that it is an outgoing rule (but that is not described)

traffic can be stopped due to multiple reasons:
  • the defined rule
  • incorrect tcp status (as shown in the log)
but also due to things like:
  • ttl
  • not allowed IP options
  • and perhaps other thinks

I have no idea if that kind of blocking is shown in the log and how the cause is indicated

My remarks above refer to visible / user defined rules. But there seems/my impression is that there are also predefined invisible rules. So I wonder if those rules can be made visible and if it is posible to show the result "block, pass or reject" can be made visible.

Hope this helps to improve documentation and perhaps the gui.

Sincerely,

Louis

Actions

Also available in: Atom PDF