Nat , firewall rules and geo block
Options
sk8erbender
Posts: 74 Ally Member
Guys I have a question about NAT and firewall rules
Here is my NAT
Here is my firewall
The question is -
Do you need to make IPv4 destination to openvpn server, gateway and etc? Or just leave destination all and then goes the rules which I have ?
Here is my NAT
Here is my firewall
The question is -
Do you need to make IPv4 destination to openvpn server, gateway and etc? Or just leave destination all and then goes the rules which I have ?
0
Comments
-
Although, use one firewall rule for all NATed services is possible.
But from security point of view, it's better add different firewall rule for dedicated server with services.
So that like this,
source: allowed source, destination: server 1 private IP, service 1(ex. TCP 80)
source: allowed source, destination: server 2 private IP, service 2(ex. TCP443)
0 -
zyman2008 said:Although, use one firewall rule for all NATed services is possible.
But from security point of view, it's better add different firewall rule for dedicated server with services.
So that like this,
source: allowed source, destination: server 1 private IP, service 1(ex. TCP 80)
source: allowed source, destination: server 2 private IP, service 2(ex. TCP443)
U see that I have 1 rule for GEO
Then Geo block all
and then goes rules like you said - WAN to LAN source ANY destination server private IP service (ex TCP 80 )
0 -
Oh i think i see now those rules below just does not work..
0
Categories
- All Categories
- 384 Beta Program
- 2.1K Nebula
- 116 Nebula Ideas
- 80 Nebula Status and Incidents
- 5.1K Security
- 74 USG FLEX H Series
- 247 Security Ideas
- 1.3K Switch
- 70 Switch Ideas
- 907 WirelessLAN
- 34 WLAN Ideas
- 5.9K Consumer Product
- 210 Service & License
- 333 News and Release
- 71 Security Advisories
- 21 Education Center
- 5 [Campaign] Zyxel Network Detective
- 1.9K FAQ
- 886 Nebula FAQ
- 415 Security FAQ
- 228 Switch FAQ
- 198 WirelessLAN FAQ
- 46 Consumer Product FAQ
- 137 Service & License FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 73 About Community
- 63 Security Highlight