User Tools

Site Tools


pfsense:install_pfsense:create_firewall_rules

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revisionPrevious revision
Next revision
Previous revision
pfsense:install_pfsense:create_firewall_rules [2021/01/05 18:23] – [Allow Guest to Access the Internet] peterpfsense:install_pfsense:create_firewall_rules [2022/10/20 09:12] (current) – [IOT Firewall Rules] peter
Line 12: Line 12:
  
 ====== LAN Firewall Rules ====== ====== LAN Firewall Rules ======
 +
 +Navigate to **Firewall -> Rules -> LAN**.
  
 LAN Firewall rules will cover: LAN Firewall rules will cover:
Line 79: Line 81:
  
 ====== CLEAR Firewall Rules ====== ====== CLEAR Firewall Rules ======
 +
 +Navigate to **Firewall -> Rules -> CLEAR**.
  
 The requirements for this interface are: The requirements for this interface are:
Line 142: Line 146:
  
 ====== IOT Firewall Rules ====== ====== IOT Firewall Rules ======
 +
 +Navigate to **Firewall -> Rules -> IOT**.
  
 IOT devices should be prevented from accessing anything that is not-essential to them. IOT devices should be prevented from accessing anything that is not-essential to them.
Line 430: Line 436:
 ---- ----
  
-===== Block unknown IPv4 =====+The final ruleset for the GUEST will be:
  
-  * Click **↴+Add** +{{:pfsense:install_pfsense:pfsense_-_firewall_-_rules_-_guest.png?800|}}
-  * Action **Reject**. +
-  * Disabled **Not Checked**. +
-  * Interface **GUEST**. +
-  * Address Family:  **IPv4**. +
-  * Protocol:  **Any**. +
-  * Source =  **Any**. +
-  * Destination:  **Any**. +
-  * Log:  **Checked**. +
-  * Description:  **GUEST Block IPv4**. +
-  * Click **Save**. +
- +
-<WRAP info> +
-**NOTE:**  Reject is used rather than block on internal interfaces to provide a response to any programs trying to send traffic preventing delays associated with waiting for time outs to occur. +
-</WRAP> +
- +
----- +
- +
-===== Block unknown IPv6 ===== +
- +
-  * Click **↴+Add**. +
-  * Action:  **Reject**. +
-  * Disabled:  **Not Checked**. +
-  * Interface:  **GUEST**. +
-  * Address Family:  **IPv6**. +
-  * Protocol:  **Any**. +
-  * Source:  **Any**. +
-  * Destination:  **Any**. +
-  * Log:  **Not Checked**. +
-  * Description:  **GUEST - Block IPv6**. +
-  * Click **Save**. +
- +
-<WRAP info> +
-**NOTE:**  Reject is used rather than block on internal interfaces to provide a response to any programs trying to send traffic preventing delays associated with waiting for time outs to occur. +
-</WRAP>+
  
 ---- ----
pfsense/install_pfsense/create_firewall_rules.1609871037.txt.gz · Last modified: 2021/01/05 18:23 by peter

Donate Powered by PHP Valid HTML5 Valid CSS Driven by DokuWiki