traffic not being blocked by IP

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.

traffic not being blocked by IP

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.
traffic not being blocked by IP
traffic not being blocked by IP
2024-10-03 16:05:11
Model: ER7206 (TL-ER7206)  
Hardware Version: V1
Firmware Version: 1.4.2

I have an ER7206 that I setup a virtual server on and I need to restrict it to specific IPs that are allowed to connect, and block everything else.

 


Under NAT->Virtual Servers I have an IP set for the station I want external access to

Under Service Type I added the service and port information

Under IP Groups I have a group (PUBLICIPS) set with the public IP range I want to have access to the server (after adding the IPs into the IP Addresses list)

Under IP Groups I have the IP set of the machine I want external access to

Under Firewall->Access Control I have 2 rules

 

Rule #1 allows the traffic to the server.

 

Direction is WAN IN

Source is the IP group (PUBLICIPS) that I want to allow access from

Destination is the IP of the server I want to connect to

 

Rule #2 is the blocking rule

 

Direction is WAN IN

Source is IPGROUP_ANY

Destination is the IP of the server from Rule #1

 

With this config I can still connect from any external IP. It's not blocking IPs outside of the PUBLICIPS group. I even tried connecting from my cell phone (not on wifi) and I'm able to conenct.

 

If I disable the virtual server i do lose access, so at least that is working.

  0      
  0      
#1
Options
1 Reply
Re:traffic not being blocked by IP
2024-10-08 03:15:13 - last edited 2024-10-08 03:15:20

Hi @vtach3743 

Thanks for posting in our business forum.

Does this persist in your system?

Can you show pictures of the IP group you have set and the ACL?

  0  
  0  
#2
Options