News: This forum is now permanently frozen.
Pages: [1]
Topic: Securing WAN to specific subnets  (Read 1065 times)
« on: July 08, 2011, 01:05:10 »
aoit *
Posts: 1

I have two locations with three internet connections total. We have a VPN from each of our locations to a Monowall in a colo. We would like to secure the Monowall to only talk to our three internet connections, and not anyone else.

Can this be done, and if so, how?
« Reply #1 on: July 12, 2011, 07:01:22 »
cmb *****
Posts: 851

Yes and no. Yes in that you can configure your WAN firewall rules to only allow traffic from those locations. No depending on what VPN type(s) you're using, as there are auto-added VPN rules on WAN that allow that traffic in which may be more permissive than absolutely required (check status.php for the raw ruleset to see). You can hack the source to not add those rules and manually add your own more restrictive ones if that's the case in your setup.
 
Pages: [1]
 
 
Powered by SMF 1.1.20 | SMF © 2013, Simple Machines