Sujet : Re: Firewalls: Rant
De : sylvia (at) *nospam* email.invalid (Sylvia Else)
Groupes : comp.miscDate : 08. Dec 2024, 11:52:08
Autres entêtes
Message-ID : <lrlc2oF46llU1@mid.individual.net>
References : 1 2 3 4
User-Agent : Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:102.0) Gecko/20100101 Thunderbird/102.15.1
On 08-Dec-24 2:24 pm, Computer Nerd Kev wrote:
Sylvia Else <sylvia@email.invalid> wrote:
I was just iptables directly, since I know how to configure it. I need
to reverse the trust relationship, trusting wan, and not trusting lan.
In the end I've just gone through the luci stuff, replacing lan with wan
and vice versa. Now I just need to figure out the best way of blocking
access from lan to some wan subnets. Probably not difficult, though it
would help if I could find a defined syntax, rather than just examples.
Maybe I'm just looking in the wrong place.
I've never used the LuCI Web interface, but this page has plenty of
details for editing the /etc/config/firewall file:
https://openwrt.org/docs/guide-user/firewall/firewall_configuration
Thanks for the link.
Sylvia.