Block private & bogon networks on OPT1

  • Hi,

    Would putting <blockpriv>and <blockbogons>on the interfaces section of /cf/conf/config.xml like this:


    and rebooting do the trick of blocking private IPs and bogons on OPT1 even if the graphical interface is not updated (neither the "interfaces" nor the firewall "rules" page)?



  • Something that seems to work for me is creating an alias of RFC 1918 addresses and blocking that on OPT1 for WAN purposes.

