Lantis wrote: ↑Wed Mar 05, 2025 6:40 am
If you shared your config I could try to spot if you have done it correctly.
The firewall file?
Lantis wrote: ↑Wed Mar 05, 2025 6:40 am
Assuming you have, did you restart the firewall after placing the rule in the file?
I was rebooting the router, but I tried your command now.
Lantis wrote: ↑Wed Mar 05, 2025 6:40 am
The rule will be under zone_wan_forward.
Seems to be there
Chain zone_wan_forward (1 references)
pkts bytes target prot opt in out source destination
386 26595 forwarding_wan_rule all * * ::/0 ::/0 /* !fw3: Custom wan forwarding rule chain */
377 24968 ACCEPT ipv6-icmp * * ::/0 ::/0 ipv6-icmptype 128 limit: avg 1000/sec burst 5 /* !fw3: Allow-ICMPv6-Forward */
0 0 ACCEPT ipv6-icmp * * ::/0 ::/0 ipv6-icmptype 129 limit: avg 1000/sec burst 5 /* !fw3: Allow-ICMPv6-Forward */
0 0 ACCEPT ipv6-icmp * * ::/0 ::/0 ipv6-icmptype 1 limit: avg 1000/sec burst 5 /* !fw3: Allow-ICMPv6-Forward */
0 0 ACCEPT ipv6-icmp * * ::/0 ::/0 ipv6-icmptype 2 limit: avg 1000/sec burst 5 /* !fw3: Allow-ICMPv6-Forward */
0 0 ACCEPT ipv6-icmp * * ::/0 ::/0 ipv6-icmptype 3 limit: avg 1000/sec burst 5 /* !fw3: Allow-ICMPv6-Forward */
0 0 ACCEPT ipv6-icmp * * ::/0 ::/0 ipv6-icmptype 4 code 0 limit: avg 1000/sec burst 5 /* !fw3: Allow-ICMPv6-Forward */
0 0 ACCEPT ipv6-icmp * * ::/0 ::/0 ipv6-icmptype 4 code 1 limit: avg 1000/sec burst 5 /* !fw3: Allow-ICMPv6-Forward */
0 0 zone_lan_dest_ACCEPT esp * * ::/0 ::/0 /* !fw3: Allow-IPSec-ESP */
0 0 zone_lan_dest_ACCEPT udp * * ::/0 ::/0 udp dpt:500 /* !fw3: Allow-ISAKMP */
0 0 zone_lan_dest_ACCEPT tcp * * ::/0 My ipv6 server address tcp dpt:80 /* !fw3: HTTP */
0 0 zone_lan_dest_ACCEPT udp * * ::/0 My ipv6 server address udp dpt:80 /* !fw3: HTTP */
0 0 zone_lan_dest_ACCEPT tcp * * ::/0 My ipv6 server address tcp dpt:443 /* !fw3: HTTPS */
0 0 zone_lan_dest_ACCEPT udp * * ::/0 My ipv6 server address udp dpt:443 /* !fw3: HTTPS */
0 0 zone_lan_dest_ACCEPT ipv6-icmp * * ::/0 My ipv6 server address /* !fw3: AllowICMPWebserver */
9 1627 MINIUPNPD all * * ::/0 ::/0
9 1627 MINIUPNPD all * * ::/0 ::/0
9 1627 zone_wan_dest_REJECT all * * ::/0 ::/0 /* !fw3 */
Lantis wrote: ↑Wed Mar 05, 2025 6:40 am
The final bit is whether your server is dropping icmp echoes as well.
I think it is not being dropped on the server because I can ping it from other computers on the network and from Gargoyles diagnostics.