DrayTek UK Users' Community Forum

Help, Advice and Solutions from DrayTek Users

3900 - Only Allowing Certain IP's to Port Forwards

  • camelglass
  • Topic Author
  • User
  • User
More
11 Nov 2016 11:23 #1 by camelglass
Hi All,

I have been racking my brain on this one for a while, on our Vigor 3900 I would like to limit access to certain ports via IP range, particularly our RDP ports (they are already not set to the standard port of 3389)

I would like to make it so that only approved IP address's can access them, i can see how to filter out single or ranges of IP's but how would i block all IP's on a certain port unless approved?

we do have some ports that need to be open to the world so this cannot be a blanket block.

is there a guide or some info somewhere that can help me?

Cheers
Darren

Please Log in or Create an account to join the conversation.

More
11 Nov 2016 11:32 #2 by admin3
This is the guide for configuring firewall rules to limit access to ports forwarded:
http://www.draytek.co.uk/support/guides/kb-3900-ipfilter-example

You need to make an allow rule for the IP addresses you want to allow, then a block rule after that to limit access to the port forward.

When configuring the service type, make sure the Source Port remains on its default of 1-65535 and just set the destination port.



Forum Administrator

Please Log in or Create an account to join the conversation.

  • camelglass
  • Topic Author
  • User
  • User
More
11 Nov 2016 11:34 #3 by camelglass
wicked that is exactly what i was looking for!

will have a read and give it a go!

Cheers!

Please Log in or Create an account to join the conversation.