Professional Documents
Culture Documents
Firewall
Create firewall filter rules to protect router from incoming (input) connections:
Create firewall filter rules to protect your local network from passing (forwards)
connections
To protect your local subnet against these attacks very simple firewall filter rule
can be used. This rule will drop all packets which are destined to local network
but are not NATted. NATted connections are allowed because NAT is there for exactly
this purpose - to allow/redirect access from public internet to local address.
Example script which should configure router as explained before (written on 6.34.3
RouterOS):
Example is made for PPPoE interfaces, but it can be easily adjusted for any other
PPP interface types (written on 6.34.3 RouterOS):