User Tools

Site Tools


pfsense:install_pfsense:create_firewall_rules

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revisionPrevious revision
Next revision
Previous revision
pfsense:install_pfsense:create_firewall_rules [2021/01/05 18:27] peterpfsense:install_pfsense:create_firewall_rules [2022/10/20 09:12] (current) – [IOT Firewall Rules] peter
Line 12: Line 12:
  
 ====== LAN Firewall Rules ====== ====== LAN Firewall Rules ======
 +
 +Navigate to **Firewall -> Rules -> LAN**.
  
 LAN Firewall rules will cover: LAN Firewall rules will cover:
Line 79: Line 81:
  
 ====== CLEAR Firewall Rules ====== ====== CLEAR Firewall Rules ======
 +
 +Navigate to **Firewall -> Rules -> CLEAR**.
  
 The requirements for this interface are: The requirements for this interface are:
Line 142: Line 146:
  
 ====== IOT Firewall Rules ====== ====== IOT Firewall Rules ======
 +
 +Navigate to **Firewall -> Rules -> IOT**.
  
 IOT devices should be prevented from accessing anything that is not-essential to them. IOT devices should be prevented from accessing anything that is not-essential to them.
Line 427: Line 433:
 </WRAP> </WRAP>
  
- 
----- 
- 
-===== Block unknown IPv4 ===== 
- 
-  * Click **↴+Add** 
-  * Action:  **Reject**. 
-  * Disabled:  **Not Checked**. 
-  * Interface:  **GUEST**. 
-  * Address Family:  **IPv4**. 
-  * Protocol:  **Any**. 
-  * Source =  **Any**. 
-  * Destination:  **Any**. 
-  * Log:  **Checked**. 
-  * Description:  **GUEST - Block IPv4**. 
-  * Click **Save**. 
- 
-<WRAP info> 
-**NOTE:**  Reject is used rather than block on internal interfaces to provide a response to any programs trying to send traffic preventing delays associated with waiting for time outs to occur. 
-</WRAP> 
- 
----- 
- 
-===== Block unknown IPv6 ===== 
- 
-  * Click **↴+Add**. 
-  * Action:  **Reject**. 
-  * Disabled:  **Not Checked**. 
-  * Interface:  **GUEST**. 
-  * Address Family:  **IPv6**. 
-  * Protocol:  **Any**. 
-  * Source:  **Any**. 
-  * Destination:  **Any**. 
-  * Log:  **Not Checked**. 
-  * Description:  **GUEST - Block IPv6**. 
-  * Click **Save**. 
- 
-<WRAP info> 
-**NOTE:**  Reject is used rather than block on internal interfaces to provide a response to any programs trying to send traffic preventing delays associated with waiting for time outs to occur. 
-</WRAP> 
  
 ---- ----
pfsense/install_pfsense/create_firewall_rules.1609871227.txt.gz · Last modified: 2021/01/05 18:27 by peter

Donate Powered by PHP Valid HTML5 Valid CSS Driven by DokuWiki