DrayTek UK Users' Community Forum
Help, Advice and Solutions from DrayTek Users
3900 - Only Allowing Certain IP's to Port Forwards
- camelglass
- Topic Author
- Offline
- New Member
Less
More
- Posts: 2
- Thank yous received: 0
11 Nov 2016 11:23 #87274
by camelglass
3900 - Only Allowing Certain IP's to Port Forwards was created by camelglass
Hi All,
I have been racking my brain on this one for a while, on our Vigor 3900 I would like to limit access to certain ports via IP range, particularly our RDP ports (they are already not set to the standard port of 3389)
I would like to make it so that only approved IP address's can access them, i can see how to filter out single or ranges of IP's but how would i block all IP's on a certain port unless approved?
we do have some ports that need to be open to the world so this cannot be a blanket block.
is there a guide or some info somewhere that can help me?
Cheers
Darren
I have been racking my brain on this one for a while, on our Vigor 3900 I would like to limit access to certain ports via IP range, particularly our RDP ports (they are already not set to the standard port of 3389)
I would like to make it so that only approved IP address's can access them, i can see how to filter out single or ranges of IP's but how would i block all IP's on a certain port unless approved?
we do have some ports that need to be open to the world so this cannot be a blanket block.
is there a guide or some info somewhere that can help me?
Cheers
Darren
Please Log in or Create an account to join the conversation.
- admin3
- Offline
- Site Admin
Less
More
- Posts: 604
- Thank yous received: 0
11 Nov 2016 11:32 #87275
by admin3
Forum Administrator
Replied by admin3 on topic Re: 3900 - Only Allowing Certain IP's to Port Forwards
This is the guide for configuring firewall rules to limit access to ports forwarded:
http://www.draytek.co.uk/support/guides/kb-3900-ipfilter-example
You need to make an allow rule for the IP addresses you want to allow, then a block rule after that to limit access to the port forward.
When configuring the service type, make sure the Source Port remains on its default of 1-65535 and just set the destination port.
You need to make an allow rule for the IP addresses you want to allow, then a block rule after that to limit access to the port forward.
When configuring the service type, make sure the Source Port remains on its default of 1-65535 and just set the destination port.
Forum Administrator
Please Log in or Create an account to join the conversation.
- camelglass
- Topic Author
- Offline
- New Member
Less
More
- Posts: 2
- Thank yous received: 0
11 Nov 2016 11:34 #87276
by camelglass
Replied by camelglass on topic Re: 3900 - Only Allowing Certain IP's to Port Forwards
wicked that is exactly what i was looking for!
will have a read and give it a go!
Cheers!
will have a read and give it a go!
Cheers!
Please Log in or Create an account to join the conversation.
Moderators: Chris
Copyright © 2025 DrayTek