Block Ports in IPSec Tunnel
-
Is it possibel to
block different Ports in IPSec Tunnel,
or only alow a few Ports in both directions ?LAN: 172.16.133.0/24
IPSec: 172.16.18x
-
You can block incoming, but there is no control for packets already entered into the tunnel.
If you control both ends of the IPSEC tunnel then its possible to filter bi-directionally but if you do not control the other endpoint then this is not doable at the moment.
Same situation as m0n0wall.
-
I thought firewalling/port restriction was not supported at this point: http://forum.pfsense.org/index.php?topic=744.0
Im not sure Im understanding where you would restrict the ports for the tunnel except through the firewall ruleset.
-
On the incoming interface (EG. LAN)
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.