Page 1 of 1

Firewall and port forwading

Posted: Wed Nov 07, 2012 10:06 am
by palace
Hi There

I have setup my 7800N to forward port 1433 (SQL) to an internal server and that works fine. I then put in a firewall rule to allow only a specific IP address to access via port 1433 and then set the next rule to block any IP and port 1433. Seems like it doesn't matter what firewall rules you put in, access to port 1433 is available for any external connection. Does this sound like normal operation for the 7800N or does it seem like I might be doing something wrong? Firmware is 1.06g

Cheers
Peter

Re: Firewall and port forwading

Posted: Wed Nov 07, 2012 10:36 am
by billion_fan
Please refer to this link

viewtopic.php?f=9&t=376

I have posted a example further down the page, of what your setup should look like.

I hope this helps :D

Re: Firewall and port forwading

Posted: Wed Nov 07, 2012 11:05 am
by palace
Hi billion_fan

Thank you for your reply. That's pretty much how I've set it up. I have 4 remote sites that can access anything and then I put in a block for SQL for any external address (damn hackers/script kiddies). Hopefully the picture comes out inline in this reply so you can see how it's configured. I'm going to try a restart later (it's a production system) just to make sure it's not something just being a bit screwy..
b1.png

Re: Firewall and port forwading

Posted: Wed Nov 07, 2012 11:47 am
by billion_fan
You need to add the port and internal IP address as shown in the on the attached screen shot.

That way it will be blocked from all other external WAN IP's.

Make sure you enter the port number in the internal port section of the forward rules, with the internal IP address.

As shown in the screen shot

Re: Firewall and port forwading

Posted: Wed Nov 07, 2012 7:06 pm
by palace
Hi billion_fan

Yep the rule called SQL Block is setup that way.
b2.png
Looks like whatever runs the firewall somehow got screwed up as I did a full power off reset last night and it now seems to be working! Thought it was a bit weird as all the rules looked like they were setup correctly. Just a funny quirk I guess.

Thank you for the replies.

Cheers
Peter