Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    NAT Security Question

    Scheduled Pinned Locked Moved NAT
    4 Posts 3 Posters 1.8k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • T
      tommyboy180
      last edited by

      When I disable a Firewall exception but leave a NAT entry for an internal device am I less secure than removing the unused NAT entry?

      The reason I ask is I am wondering if its still possible to map internal addresses even though a Firewall Exception may not exist but a NAT entry is still in place.

      Thank you.

      -Tom Schaefer
      SuperMicro 1U 2X Intel pro/1000 Dual Core Intel 2.2 Ghz - 2 Gig RAM

      Please support pfBlocker | File Browser | Strikeback

      1 Reply Last reply Reply Quote 0
      • D
        danswartz
        last edited by

        What do you mean by "firewall exception"?

        1 Reply Last reply Reply Quote 0
        • E
          Efonnes
          last edited by

          If you have no firewall rules that would let it through, then it won't let it pass.  If you still have the port forward enabled, you will see the port forward's target in your firewall log instead of your WAN IP address.  Either way, it is going to block it when you don't have anything defined to let it pass.

          1 Reply Last reply Reply Quote 0
          • T
            tommyboy180
            last edited by

            Cool. Thank you.

            -Tom Schaefer
            SuperMicro 1U 2X Intel pro/1000 Dual Core Intel 2.2 Ghz - 2 Gig RAM

            Please support pfBlocker | File Browser | Strikeback

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.