Jump to content

Firewall traffic rules: Difference between revisions

no edit summary
No edit summary
No edit summary
 
Line 186: Line 186:
<br>
<br>
A new window will pop-out where you will be able to specify additional settings.
A new window will pop-out where you will be able to specify additional settings.
*'''Enable the instance'''
#'''Enable the instance'''
*Choose '''LAN''' as the source zone.
#Choose '''LAN''' as the source zone.
*Leave the source IP field '''‘any’''' or specify a LAN network to block.
#Choose '''Device (input)''' as the Destination zone.
*In the action field choose '''‘Drop’'''.
#Choose '''5000''' as Destination port.
#In the action field choose '''‘Drop’'''.


[[File:Networking_rutos_configuration_example_firewall_traffic_rules_7.8_11.png|alt=Firewall traffic rule to deny single port for LAN network configuration|border|class=tlt-border|1000px]]
[[File:Networking_rutos_configuration_example_firewall_traffic_rules_7.8_11_edit.png|alt=Firewall traffic rule to deny single port for LAN network configuration|border|class=tlt-border|1000px]]


Scroll down and press '''‘Save & Apply’'''.
Scroll down and press '''‘Save & Apply’'''.
Line 209: Line 210:
[[File:Networking_rutos_configuration_example_firewall_traffic_rules_7.8_12.png|alt=Firewall traffic rule to allow a single host on one port|border|class=tlt-border|1000px]]
[[File:Networking_rutos_configuration_example_firewall_traffic_rules_7.8_12.png|alt=Firewall traffic rule to allow a single host on one port|border|class=tlt-border|1000px]]


* set the source IP address to the IP address of the host.
A new window will pop-out where you will be able to specify additional settings.
*In the action field choose '''‘Accept’'''.<br>
#'''Enable the instance'''
#Choose '''LAN''' as the source zone.
#Choose '''192.168.1.11''' as the Source IP address.


[[File:Networking_rutos_configuration_example_firewall_traffic_rules_7.8_13.png|alt=Firewall traffic rule to allow a single host on one port configuration|border|class=tlt-border|1000px]]
[[File:Networking_rutos_configuration_example_firewall_traffic_rules_7.8_13_edit.png|alt=Firewall traffic rule to allow a single host on one port configuration|border|class=tlt-border|1000px]]


Scroll down and press '''‘Save & Apply’'''.
Scroll down and press '''‘Save & Apply’'''.
Line 234: Line 237:


A new window will pop-out where you will be able to specify additional settings.
A new window will pop-out where you will be able to specify additional settings.
#'''Enable the instance'''
#Choose '''TCP''' Protocol.
#In the Source zone choose '''wan'''.
#In the source IP enter the IP address from which you want to be able to access the WebUI.
#Choose the Destination ports which should be reachable.
#In the action field choose '''‘Accept’'''.<br>


* In the source IP enter the IP address from which you want to be able to access the WebUI.
[[File:Networking_rutos_configuration_example_firewall_traffic_rules_7.8_16_edit.png|alt=Firewall traffic rule to allow web access from WAN configuration|border|class=tlt-border|1000px]]
*Destination zone should be set to Device (input).
*In the destination IP address choose the IP address of the router.
*In the action field choose '''‘Accept’'''.<br>
 
[[File:Networking_rutos_configuration_example_firewall_traffic_rules_7.8_16.png|alt=Firewall traffic rule to allow web access from WAN configuration|border|class=tlt-border|1000px]]




Line 269: Line 273:
<br>
<br>
A new window will pop-out where you will be able to specify additional settings.
A new window will pop-out where you will be able to specify additional settings.
#'''Enable the instance'''
#Choose '''TCP+UDP''' Protocol.
#In the Source zone choose '''lan'''.
#In the destination port field enter the range of ports you wish to deny (For example, '''‘1500-1700’'''), or list specific ports by leaving spaces in-between port numbers (For example, '''‘80 443'''’).
#In the action field choose '''‘Drop’'''.


*Select '''<nowiki/>'TCP+UDP'''' as protocol.
[[File:Networking_rutos_configuration_example_firewall_traffic_rules_7.8_19_edit.png|alt=Firewall traffic rule to block a range of ports|border|class=tlt-border|1000px]]
*Select source zone '''lan'''.
*In the destination port field enter the range of ports you wish to deny (For example, '''‘1500-1700’'''), or list specific ports by leaving spaces in-between port numbers (For example, '''‘80 443'''’).
*In the action field choose '''‘Drop’'''.
 
[[File:Networking_rutos_configuration_example_firewall_traffic_rules_7.8_19.png|alt=Firewall traffic rule to block a range of ports|border|class=tlt-border|1000px]]


You can specify additional settings as you wish.
You can specify additional settings as you wish.