Prevent Snort from block my ip when I'm remote accessing my Pfsense box
-
Hi!
Can I ask for help on how I can prevent Snort from block my IP address when I am accessing my Pfsense box remotely? I don't have static IP when I'm mobile, so I won't be able to whitelist my IP, any work around for this? Snort alert: (http_inspect) TOO MANY PIPELINED REQUESTS
TIA!
ast
-
Hi,
I dont't recommend to make your firewall management publicly accessable through Internet. It's a high security risk. Set up OpenVPN for management access instead.
-
Hi,
I dont't recommend to make your firewall management publicly accessable through Internet. It's a high security risk. Set up OpenVPN for management access instead.
Thanks for the advice! I've been wanting to set up VPN, but don't know how to go about it or where to start :( totally clueless. Can you help point me to the right direction?
TIA!
ast
-
There are many step-by-step instructions over the Internet, pick one you prefer.
Official doc: https://doc.pfsense.org/index.php/OpenVPN_Remote_Access_Server
Other example: https://www.sparklabs.com/support/kb/article/setting-up-an-openvpn-server-with-pfsense-and-viscosity/ -
Bottom line is, don't enable remote access to your pfSense box without a VPN. Until you have a VPN server setup, disable all remote access.
SSH with pass + key auth is fine.