  Anav Sarcastic Llama? Naw, Just Acerbic Premium join:2001-07-16 Dartmouth, NS
2 edits | reply to MrYogi Re: Locking All but some LAN to WAN traffic on P334
No you just have not hoisted in his methodology
You are going to turn block services inside out!
First enable the services Identify the services your are going to EVENTUALLY ALLOW by blocking them........ (think of it at this point as an identifying process if it helps....)
Then your going into the CLI manual entry set, and change the current default for LAN to WAN from allow to block.
Currently, all services from LAN to WAN are allowed. That is why block services is in place - BlOck Services is basically a way of providing LAN to WAN rules..................
Jbibe through the CLI set then changes the default setting to BLOCK ALL, instead of ALLOW all. These commands are not available on the Gui but exist in the router via manual methods.
THEN he manually changes the rules for the services you have identified in the web GUI from BLOCK to FORWARD(allow).
Now you have a LAN to WAN that is locked down, but allows those services you have identified to pass through..
Its simple, brilliant, and typical Jbibe.
In your mind, change the words "BLOCK SERVICES" TO "LAN TO WAN RULES"
Before LAN TO WAN - set to Allow All Block Services - LAN to WAN rules Off (not enabled) Default for Identified Services is Blocked
After LAN to WAN - set to BLOCK All Block Services - LAN to WAN rules ON (EnABLED) Default for Identifed services is Allowed
-- Ain't nuthin but the blues! "Albert Collins". Leave your troubles at the door! "Pepe Peregil" De Sevilla. Just Don't Wifi without WPA, "Yul Brenner" |