Under FreeBSD 13, I'm using PF and it was working fine till today.
I've a <whitelist> table that I suspect it's not really working with PF.
Any IPs within that file (table <whitelist> persist file "/var/pf/whitelist.txt") seems still getting blocked by PF,
as I see through real-time by the help of:
tcpdump -n -e -ttt -i pflog0 command
sample line: 00:00:00.000000 rule 3/0(match): block in on igb0: ip.address.that.exist.in.whitelist > myserverip.443: Flags [R], seq 2609505599, win 0, length 0
Now, my question is, how can I make sure IPs within whitelist.txt are not being blocked never by PF?
pfctl -t whitelist -T show -v shows to me all my whitelist IPs with: "Cleared: Tue Jan 4 16:30:32 2022" - what does "cleared" mean? If that'd help..
P.S: My respective line related to the whitelist table in pf.conf: pass quick on $ext_if from <whitelist> to any keep state
(I did move it to the top rules, like it was first one, and then comes: block return in log all - didn't work neither.)
That's the output of "pfctl -sr" : https://bsd.to/QcLx/raw
and this is my pf.conf: https://bsd.to/BgPO/raw
Any suggestion would be much appreciated.
Thanks.
I've a <whitelist> table that I suspect it's not really working with PF.
Any IPs within that file (table <whitelist> persist file "/var/pf/whitelist.txt") seems still getting blocked by PF,
as I see through real-time by the help of:
tcpdump -n -e -ttt -i pflog0 command
sample line: 00:00:00.000000 rule 3/0(match): block in on igb0: ip.address.that.exist.in.whitelist > myserverip.443: Flags [R], seq 2609505599, win 0, length 0
Now, my question is, how can I make sure IPs within whitelist.txt are not being blocked never by PF?
pfctl -t whitelist -T show -v shows to me all my whitelist IPs with: "Cleared: Tue Jan 4 16:30:32 2022" - what does "cleared" mean? If that'd help..
P.S: My respective line related to the whitelist table in pf.conf: pass quick on $ext_if from <whitelist> to any keep state
(I did move it to the top rules, like it was first one, and then comes: block return in log all - didn't work neither.)
That's the output of "pfctl -sr" : https://bsd.to/QcLx/raw
and this is my pf.conf: https://bsd.to/BgPO/raw
Any suggestion would be much appreciated.
Thanks.