Lantis wrote: ↑Wed Mar 05, 2025 6:40 am
If you shared your config I could try to spot if you have done it correctly.
 
The firewall file?
Lantis wrote: ↑Wed Mar 05, 2025 6:40 am
Assuming you have, did you restart the firewall after placing the rule in the file?
 
I was rebooting the router, but I tried your command now.
Lantis wrote: ↑Wed Mar 05, 2025 6:40 am
The rule will be under zone_wan_forward.
 
Seems to be there
Chain zone_wan_forward (1 references)
 pkts bytes target     prot opt in     out     source               destination
  386 26595 forwarding_wan_rule  all      *      *       ::/0                 ::/0                 /* !fw3: Custom wan forwarding rule chain */
  377 24968 ACCEPT     ipv6-icmp    *      *       ::/0                 ::/0                 ipv6-icmptype 128 limit: avg 1000/sec burst 5 /* !fw3: Allow-ICMPv6-Forward */
    0     0 ACCEPT     ipv6-icmp    *      *       ::/0                 ::/0                 ipv6-icmptype 129 limit: avg 1000/sec burst 5 /* !fw3: Allow-ICMPv6-Forward */
    0     0 ACCEPT     ipv6-icmp    *      *       ::/0                 ::/0                 ipv6-icmptype 1 limit: avg 1000/sec burst 5 /* !fw3: Allow-ICMPv6-Forward */
    0     0 ACCEPT     ipv6-icmp    *      *       ::/0                 ::/0                 ipv6-icmptype 2 limit: avg 1000/sec burst 5 /* !fw3: Allow-ICMPv6-Forward */
    0     0 ACCEPT     ipv6-icmp    *      *       ::/0                 ::/0                 ipv6-icmptype 3 limit: avg 1000/sec burst 5 /* !fw3: Allow-ICMPv6-Forward */
    0     0 ACCEPT     ipv6-icmp    *      *       ::/0                 ::/0                 ipv6-icmptype 4 code 0 limit: avg 1000/sec burst 5 /* !fw3: Allow-ICMPv6-Forward */
    0     0 ACCEPT     ipv6-icmp    *      *       ::/0                 ::/0                 ipv6-icmptype 4 code 1 limit: avg 1000/sec burst 5 /* !fw3: Allow-ICMPv6-Forward */
    0     0 zone_lan_dest_ACCEPT  esp      *      *       ::/0                 ::/0                 /* !fw3: Allow-IPSec-ESP */
    0     0 zone_lan_dest_ACCEPT  udp      *      *       ::/0                 ::/0                 udp dpt:500 /* !fw3: Allow-ISAKMP */
    0     0 zone_lan_dest_ACCEPT  tcp      *      *       ::/0                 My ipv6 server address  tcp dpt:80 /* !fw3: HTTP */
    0     0 zone_lan_dest_ACCEPT  udp      *      *       ::/0                 My ipv6 server address  udp dpt:80 /* !fw3: HTTP */
    0     0 zone_lan_dest_ACCEPT  tcp      *      *       ::/0                 My ipv6 server address  tcp dpt:443 /* !fw3: HTTPS */
    0     0 zone_lan_dest_ACCEPT  udp      *      *       ::/0                 My ipv6 server address  udp dpt:443 /* !fw3: HTTPS */
    0     0 zone_lan_dest_ACCEPT  ipv6-icmp    *      *       ::/0                 My ipv6 server address  /* !fw3: AllowICMPWebserver */
    9  1627 MINIUPNPD  all      *      *       ::/0                 ::/0
    9  1627 MINIUPNPD  all      *      *       ::/0                 ::/0
    9  1627 zone_wan_dest_REJECT  all      *      *       ::/0                 ::/0                 /* !fw3 */
Lantis wrote: ↑Wed Mar 05, 2025 6:40 am
The final bit is whether your server is dropping icmp echoes as well.
 
I think it is not being dropped on the server because I can ping it from other computers on the network and from Gargoyles diagnostics.