Omada OC200 firewall outgoing rules?

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.

Omada OC200 firewall outgoing rules?

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.
Omada OC200 firewall outgoing rules?
Omada OC200 firewall outgoing rules?
2022-07-13 01:57:22
Tags: #DNS
Model: OC200  
Hardware Version:
Firmware Version:

Set up an SDN using ER605 router on a OC200 controller.

Trying to create a firewall rule to prevent DNS circumvention by creating the following setup:

Allow TCP/UDP to *public DNS IP* on port 53

Block TCP/UDP all IP's on port 53

 

Is there a way to do this on this equipment?

  0      
  0      
#1
Options
2 Reply
Re:Omada OC200 firewall outgoing rules?
2022-07-13 16:24:35 - last edited 2022-07-13 16:32:55

I was mistaken, this looks like it should work on the Router's ACL creation...

 

1. create the DNS_Requests group

 

 

2. create a version that is PERMIT to the Safe DNS IP or IPs (create SafeIP_Group)

3. then a second version that is DENY to IPGroup_Any (as shown below)

 

<< Paying it forward, one juicy problem at a time... >>
  0  
  0  
#2
Options
Re:Omada OC200 firewall outgoing rules?
2022-07-14 06:07:55

  @homelabber 

 

You can also try setting the DNS to a fixed IP address on the WAN port, e.g. set to 8.8.8.8.

Just striving to develop myself while helping others.
  0  
  0  
#3
Options