D-Link DSR-1000AC User Manual - Page 176
Firewall
View all D-Link DSR-1000AC manuals
Add to My Manuals
Save this manual to your list of manuals |
Page 176 highlights
Section 8 - Security Firewall Firewall Rules Path: Security > Firewall > Firewall Rules > IPv4 Firewall Rules or IPv6 Firewall Rules Inbound (WAN to LAN/DMZ) rules restrict access to traffic entering your network, selectively allowing only specific outside users to access specific local resources. By default all access from the insecure WAN side are blocked from accessing the secure LAN, except in response to requests from the LAN or DMZ. To allow outside devices to access services on the secure LAN, you must create an inbound firewall rule for each service. If you want to allow incoming traffic, you must make the router's WAN port IP address known to the public. This is called "exposing your host." How you make your address known depends on how the WAN ports are configured; for this router you may use the IP address if a static address is assigned to the WAN port, or if your WAN address is dynamic a DDNS (Dynamic DNS) name can be used. Outbound (LAN/DMZ to WAN) rules restrict access to traffic leaving your network, selectively allowing only specific local users to access specific outside resources. The default outbound rule is to allow access from the secure zone (LAN) to either the public DMZ or insecure WAN. On other hand the default outbound rule is to deny access from DMZ to insecure WAN. You can change this default behavior in the Firewall Settings > Default Outbound Policy page. When the default outbound policy is allow always, you can to block hosts on the LAN from accessing internet services by creating an outbound firewall rule for each service. To create a new firewall rule: 1. Click Security > Firewall > IPv4 Firewall Rules tab or IPv6 Firewall Rules tab. 2. Right-click an entry and select either Edit or Delete. To add a new group, click Add New IPv4/IPv6 Firewall Rule. D-Link DSR-Series User Manual 163