If you open up blanket rules in and out, you have totally disabled the firewall.
However, you still have routing and NAT. By turning on advanced outbound NAT and fuilling nothing out, you turn off NAT. For routing it is tougher. There is not way to turn routing off between LAN and WAN. However, you can bridge opt1 to LAN or WAN. But I do not know how traffic shaping works on bridges.
As for the web page on opt1, that works fine for me in any scenario. (As long as firewall rules allow it.)
|