Limiting UPNP to one device
-
UPNP is as stated in the documentation a security nightmare.
But it is so convenient... so I thought to use ACL for it.
If I deny every upnp request except this:
allow 1024-65535 10.1.1.70 1024-65535That would limit my attack surface right?
That is my gamin console with a static ip. -
Yes, that would limit UPNP to only 10.1.1.70
-
@behemyth Sorry for being back so "late" but it sure works!
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.