Adamm00 / IPSet_ASUS

Skynet - Advanced IP Blocking For ASUS Routers Using IPSet.
https://www.snbforums.com/threads/release-skynet-router-firewall-security-enhancements.16798/
346 stars 61 forks source link

IP address erroneously country blocked. Whitelisting the ASN doesn't unban the address. #102

Closed random3456345 closed 1 year ago

random3456345 commented 1 year ago
Brief Description Of Issue

I banned these countries (CN RU NL) but Skynet blocked an IP adress that is from Japan according to Skynet itself. Whitelisting the ASN doesn't unban this IP address.

Steps To Reproduce Issue

Ban these countries: CN RU NL; Try connecting to 139.162.105.138; Try to unban AS63949; Try connecting to 139.162.105.138; Unban the above countries; Connect to 139.162.105.138. *-- [i] First Tracked On Nov 7 18:42:03

Expected Behaviour

Countries that are not banned can be accessed. Whitelisting an ASN should unban the associated IP addresses.

Output of ( sh /jffs/scripts/firewall debug info )
-------------------- ---------- Test Description Result

Internet-Connectivity | [Passed] Write Permission | [Passed] Config File | [Passed] Firewall-Start Entry | [Passed] Services-Stop Entry | [Passed] Service-Event Entry | [Passed] Profile.add Entry | [Passed] SWAP File | [Passed] Cron Jobs | [Passed] NTP Sync | [Passed] IPSet Comment Support | [Passed] Log Level 5 Settings | [Passed] Duplicate Rules In RAW | [Passed] IPSets | [Passed] IPTables Rules | [Passed] Local WebUI Files | [Passed] Mounted WebUI Files | [Passed] MenuTree.js Entry | [Passed]

----------- ---------- Setting Status

Skynet Auto-Updates | [Enabled] Malware List Auto-Updates | [Enabled] Logging | [Enabled] Filter Traffic | [Enabled] Unban PrivateIP | [Disabled] Log Invalid Packets | [Enabled] Import AiProtect Data | [Enabled] Secure Mode | [Enabled] Fast Switch List | [Disabled] Syslog Location | [Default] IOT Blocking | [Disabled] Country Lookup For Stats | [Enabled] CDN Whitelisting | [Enabled] Display WebUI | [Enabled]

18/18 Tests Sucessful

Adamm00 commented 1 year ago

firewall stats search ip xxx.xxx.xxx.xxx