-
Notifications
You must be signed in to change notification settings - Fork 672
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Crowdsec not showing blocks in logs after update to 25.1 #4511
Comments
I saw this in my rules.debug log today, maybe related
|
likely fixed with the removal of the dollar sign in front of the from
|
Nice find @Monviech @AdSchellevis |
Having the same issue. |
As someone else suggested on the OPNsense forum, a workaround is to create a manual firewall rule on the WAN interface that blocks the CrowdSec list (i.e., re-create the auto-generated floating CrowdSec rule on your WAN interface). |
This works too, until the PR is merged and released
|
@mmetc Thank you for creating the PR! I applied your command line fix and CrowdSec is happy again |
Important notices
Before you add a new report, we ask you kindly to acknowledge the following:
Describe the bug
Crowdsec was working fine under 24.7.12. After upgrading to 25.1, Crowdsec block rules are not showing up in my firewall syslog nor are they showing up in the live view. Crowdsec and firewall bouncer status both have a green check. I just saw an Alert that an IP was banned a few hours ago. Perhaps the blocks are still happening but they are just not being reported/captured by the logs?
To Reproduce
Steps to reproduce the behavior:
Expected behavior
Syslogs and live view should display the Crowdsec rule/name for the Crowdsec blocked traffic
OPNsense 25.1 (amd64)
Protectli FW4B
The text was updated successfully, but these errors were encountered: