Navigation

    Netgate Discussion Forum
    • Register
    • Login
    • Search
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search

    Block Ports in IPSec Tunnel

    Firewalling
    3
    4
    2092
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S
      siri69 last edited by

      Is it possibel to
      block different Ports in IPSec Tunnel,
      or only alow a few Ports in both directions ?

      LAN: 172.16.133.0/24

      IPSec: 172.16.18x

      1 Reply Last reply Reply Quote 0
      • S
        sullrich last edited by

        You can block incoming, but there is no control for packets already entered into the tunnel.

        If you control both ends of the IPSEC tunnel then its possible to filter bi-directionally but if you do  not control the other endpoint then this is not doable at the moment.

        Same situation as m0n0wall.

        1 Reply Last reply Reply Quote 0
        • S
          Sifter last edited by

          I thought firewalling/port restriction was not supported at this point: http://forum.pfsense.org/index.php?topic=744.0

          Im not sure Im understanding where you would restrict the ports for the tunnel except through the firewall ruleset.

          1 Reply Last reply Reply Quote 0
          • S
            sullrich last edited by

            On the incoming interface (EG. LAN)

            1 Reply Last reply Reply Quote 0

            Products

            • Platform Overview
            • TNSR
            • pfSense
            • Appliances

            Services

            • Training
            • Professional Services

            Support

            • Subscription Plans
            • Contact Support
            • Product Lifecycle
            • Documentation

            News

            • Media Coverage
            • Press
            • Events

            Resources

            • Blog
            • FAQ
            • Find a Partner
            • Resource Library
            • Security Information

            Company

            • About Us
            • Careers
            • Partners
            • Contact Us
            • Legal
            Our Mission

            We provide leading-edge network security at a fair price - regardless of organizational size or network sophistication. We believe that an open-source security model offers disruptive pricing along with the agility required to quickly address emerging threats.

            Subscribe to our Newsletter

            Product information, software announcements, and special offers. See our newsletter archive to sign up for future newsletters and to read past announcements.

            © 2021 Rubicon Communications, LLC | Privacy Policy