pfsense:install_pfsense:create_firewall_rules
Differences
This shows you the differences between two versions of the page.
Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
pfsense:install_pfsense:create_firewall_rules [2021/01/05 18:12] – peter | pfsense:install_pfsense:create_firewall_rules [2022/10/20 09:12] (current) – [IOT Firewall Rules] peter | ||
---|---|---|---|
Line 12: | Line 12: | ||
====== LAN Firewall Rules ====== | ====== LAN Firewall Rules ====== | ||
+ | |||
+ | Navigate to **Firewall -> Rules -> LAN**. | ||
LAN Firewall rules will cover: | LAN Firewall rules will cover: | ||
Line 79: | Line 81: | ||
====== CLEAR Firewall Rules ====== | ====== CLEAR Firewall Rules ====== | ||
+ | |||
+ | Navigate to **Firewall -> Rules -> CLEAR**. | ||
The requirements for this interface are: | The requirements for this interface are: | ||
Line 142: | Line 146: | ||
====== IOT Firewall Rules ====== | ====== IOT Firewall Rules ====== | ||
+ | |||
+ | Navigate to **Firewall -> Rules -> IOT**. | ||
IOT devices should be prevented from accessing anything that is not-essential to them. | IOT devices should be prevented from accessing anything that is not-essential to them. | ||
Line 395: | Line 401: | ||
* Source: | * Source: | ||
* Destination: | * Destination: | ||
- | * Invert match: | + | * Invert match: |
* **Single host or alias**. | * **Single host or alias**. | ||
* Address: | * Address: | ||
Line 401: | Line 407: | ||
* From: **Any**. | * From: **Any**. | ||
* To: **Any**. | * To: **Any**. | ||
- | * Log: **Not Checked**. | + | * Log: **Checked**. |
* Description: | * Description: | ||
* Click **Save**. | * Click **Save**. | ||
Line 416: | Line 422: | ||
* Interface: | * Interface: | ||
* Address Family: | * Address Family: | ||
- | * Protocol: | + | * Protocol: |
* Source: | * Source: | ||
- | * Destination | + | * Destination: |
- | * Invert match: | + | |
- | * **Single host or alias**. | + | |
- | * Address: | + | |
- | * Destination Port Range: | + | |
- | * From: **Any**. | + | |
- | * To: **Any**. | + | |
* Log: **Not Checked**. | * Log: **Not Checked**. | ||
- | * Description: | + | * Description: |
* Click **Save**. | * Click **Save**. | ||
Line 436: | Line 436: | ||
---- | ---- | ||
- | ===== Block unknown IPv4 ===== | + | The final ruleset for the GUEST will be: |
- | * Click **↴+Add** | + | {{:pfsense:install_pfsense:pfsense_-_firewall_-_rules_-_guest.png?800|}} |
- | * Action: | + | |
- | * Disabled: **Not Checked**. | + | |
- | * Interface: | + | |
- | * Address Family: | + | |
- | * Protocol: | + | |
- | * Source = **Any**. | + | |
- | * Destination: | + | |
- | * Log: **Checked**. | + | |
- | * Description: | + | |
- | * Click **Save**. | + | |
- | + | ||
- | <WRAP info> | + | |
- | **NOTE: | + | |
- | </ | + | |
- | + | ||
- | ---- | + | |
- | + | ||
- | ===== Block unknown IPv6 ===== | + | |
- | + | ||
- | * Click **↴+Add**. | + | |
- | * Action: | + | |
- | * Disabled: | + | |
- | * Interface: | + | |
- | * Address Family: | + | |
- | * Protocol: | + | |
- | * Source: | + | |
- | * Destination: | + | |
- | * Log: **Not Checked**. | + | |
- | * Description: | + | |
- | * Click **Save**. | + | |
- | + | ||
- | <WRAP info> | + | |
- | **NOTE: | + | |
- | </ | + | |
---- | ---- |
pfsense/install_pfsense/create_firewall_rules.1609870321.txt.gz · Last modified: 2021/01/05 18:12 by peter