Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Failure to add floating rules to new VLAN or group #8078

Open
2 tasks done
dkragen opened this issue Nov 21, 2024 · 0 comments
Open
2 tasks done

Failure to add floating rules to new VLAN or group #8078

dkragen opened this issue Nov 21, 2024 · 0 comments
Labels
support Community support

Comments

@dkragen
Copy link

dkragen commented Nov 21, 2024

Important notices

Before you add a new report, we ask you kindly to acknowledge the following:

Describe the bug

Existing floating rules do not get added to the firewall rules for a new VLAN or a new group with VLANs.

To Reproduce

Steps to reproduce the behavior:

  1. Have an existing floating rule set.
  2. Make a new VLAN
  3. Assign the VLAN
  4. Review interfaces (yup, VLAN is there; if not, reboot)
  5. Go to Firewall > Rules > new VLAN: Note absence of floating rules. Check older VLANs: Floating rules are present.
  6. Reboot again (because who knows?)
  7. check Firewall > Rules > new VLAN: Still missing floating rules.

OR
1 as above
2. Make VLAN group: Firewall > Groups > +
3. Review interfaces (VLAN group missing; reboot; now present)
4. Go to firewall > Rules > VLAN group: No floating rules again. Check older groups: Floating rules present.
5. Reboot
6. Re-check: still missing.

Expected behavior
Floating rules should be imported automatically to any new interface (VLAN or group included), but with an alert that the rules may need to be modified

Describe alternatives you considered
Tried to achieve the same functionality by adding the new VLAN to an alias for all the VLANs. Ping suggested that the floating rules did NOT apply to a device on the new VLAN.

Screenshots
Floating rules on older VLAN:
quickshot_241121_102414

No floating rules on newer VLAN:
quickshot_241121_102456

Older group with floating rules:
quickshot_241121_102929

New group lacking floating rules:
quickshot_241121_103139

Software version used and hardware type if relevant, e.g.:

OPNsense 24.7.8 (amd64).
Intel(R) Celeron(R) J4125 CPU @ 2.00GHz (4 cores, 4 threads)

@AdSchellevis AdSchellevis added the support Community support label Nov 21, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
support Community support
Development

No branches or pull requests

2 participants