Re: A simple port blocking firewall?



On Sun, 28 Oct 2007 18:14:05 +0000, in uk.telecom.broadband , Peter
<occassionally-confused@xxxxxxxxxxxx> wrote:

Is there a simple to configure firewall box which can block port
ranges so that only 80, 443, and DNS (59, IIRC) go through?

I can do that on all three of my routers . My Dlink DI-604 and Netgear
wgr614 can limit that block by source IP too, eg block all except my
mail server from sending or recieving email from the internet.Its a
bit trickier on my SMC2804WBRP-G but still fairly easy.

I believe Cisco do the PIX firewall but I have used various Cisco
products over the years and their config is at best very complex and
full of gotchas.

On the Dlink its ridiculously easy - select IP Filters, enter the IP
range and port range, select protocol and click Ok You can even block
by time-of-day if you want. The same router also lets you block by
URL, MAC and Domain.
--
Mark McIntyre
.



Relevant Pages

  • Re: Linksys - sucks?
    ... my main experience these days has been using dlink. ... what i've found tho in the case of the dlink di-614+ is that the US firmware ... with respect to wireless. ... > US Robotics - Not too bad, had problems with routers need to be restarted ...
    (microsoft.public.windows.server.sbs)
  • Re: 2 wireless router/ access points, 1 as wireless receiver
    ... I have a DLink DI-614+Wireless router/ access point from my old home ... A wireless access point is a _host_, which is NOT the same as a wireless ... John Navas FAQ for Wi-Fi: ... from the transmitting routers DHCP. ...
    (alt.internet.wireless)
  • multiple access points
    ... I have a Dlink DIR-655 in the basement, ... covers most of the house but does not get too far outside. ... points as part of routers. ... SSID to the same and the channel to a non-overlapping channel (ie. 1, ...
    (alt.internet.wireless)
  • Re: 1 Way VPN ??
    ... Thanks for the help Robin. ... DLink 624 router, all I found was the entry I already enabled ... ... > routers cannot do this. ... > ranges MUST NOT be the same in both LANs. ...
    (microsoft.public.windowsxp.work_remotely)