DrayTek UK Users' Community Forum
Help, Advice and Solutions from DrayTek Users
Restricting access to/from one client - where to start?
- markvoip
- Topic Author
- Offline
- Junior Member
Less
More
- Posts: 31
- Thank yous received: 0
06 Jul 2018 13:33 #92281
by markvoip
Restricting access to/from one client - where to start? was created by markvoip
Connected by ethernet to my 2860n I have a Panasonic PVR that wants to phone home with my usage data. I don’t want it to, although I do want it to be able to access e.g. EPG data and iPlayer for catchup.
First thought is to block all outgoing traffic from it, somehow determine what it’s wanting to connect to, and whitelist on a per case basis URLs I’m ok with.
Where to start? Syslog will show me traffic from it. Feels like I need to use the firewall, but its UI is pretty daunting.
Can you point me in the right directionto get started?
TIA
Mark
First thought is to block all outgoing traffic from it, somehow determine what it’s wanting to connect to, and whitelist on a per case basis URLs I’m ok with.
Where to start? Syslog will show me traffic from it. Feels like I need to use the firewall, but its UI is pretty daunting.
Can you point me in the right directionto get started?
TIA
Mark
Please Log in or Create an account to join the conversation.
- manicguitarist
- Offline
- Junior Member
Less
More
- Posts: 45
- Thank yous received: 0
08 Jul 2018 22:56 #92286
by manicguitarist
Replied by manicguitarist on topic Re: Restricting access to/from one client - where to start?
Does the PVR need any internet access at all? If not, simplest solution would be to give the PVC a static IP address and then in the firewall UI - for both call and data...add a new item in the filters that details from LAN->WAN with the PVR's IP as source and *any* as the target and block immediately. Job done.
Please Log in or Create an account to join the conversation.
- markvoip
- Topic Author
- Offline
- Junior Member
Less
More
- Posts: 31
- Thank yous received: 0
11 Jul 2018 09:31 #92308
by markvoip
Replied by markvoip on topic Re: Restricting access to/from one client - where to start?
Thanks for your reply.
I can do all of that, but then need to allow it to access some URLs for catch-up TV and getting the TV Guide for the past (only current/future TV guida data is broadcast OTA as far as I understand it).
So I can create additional rules referring to white-list IPs, Pass Imediately and position them above the block all rule.
That gets me started, thanks.
I can do all of that, but then need to allow it to access some URLs for catch-up TV and getting the TV Guide for the past (only current/future TV guida data is broadcast OTA as far as I understand it).
So I can create additional rules referring to white-list IPs, Pass Imediately and position them above the block all rule.
That gets me started, thanks.
Please Log in or Create an account to join the conversation.
Moderators: Chris
Copyright © 2025 DrayTek