If there is one subnet, is source any same as OPT net?
-
I'm looking at the instructions in the Configuring a Secure Wireless Hotspot Single firewall approach.
For the rules in the table, for the source field, they put
EXTERNALAP net
. If there is only one subnet on that port, would there be any difference to useany
instead ofEXTERNALAP net
? -
For the vast majority of traffic you would see no difference. But as a general rule you should add only the rules that are required and since you know what subnet that traffic is coming from you can use that as the source IP there. There should never be traffic arriving there from a different subnet but if it did it should not be passed.
Steve
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.