Hi, How is a better mode to block all from internal network (local) to internet and allow only necessary services ??? Best regards, Anderson
Anderson Oliveira wrote:> Hi, > > > > How is a better mode to block all from internal network (local) to > internet and allow only necessary services ??? > >If you are asking "How do I do that", then set the "loc->net" policy to REJECT and add the rules you need. -Tom -- Tom Eastep \ Nothing is foolproof to a sufficiently talented fool Shoreline, \ http://shorewall.net Washington USA \ teastep@shorewall.net PGP Public Key \ https://lists.shorewall.net/teastep.pgp.key