NAT filter by TOD
Is it possible to restrict inbound NAT rules by TOD? I want to only allow certain NAT's during certain hours. I can't seem to figure out how to tie a Time Range profile to the NAT configuration, if this is even possible.
Thanks..
- Copy Link
- Subscribe
- Bookmark
- Report Inappropriate Content
Not in the NAT rule itself, but you can create a time-based ACL to block access to the NAT port from whatever group of IP's you deem unfit.
- Copy Link
- Report Inappropriate Content
@d0ugmac1 Hmm.. I see that I can block an IP range, but not a specific port. The goal is that I have a NAT/PAT setup for access, but I only want it accesible during the day. I don't see where I can pick just the port only the entire IP address.
- Copy Link
- Report Inappropriate Content
@d0ugmac1 Actually, I think I figured it out.
- Copy Link
- Report Inappropriate Content
- Copy Link
- Report Inappropriate Content
@d0ugmac1 I'll have to check it later when I get home. I can VPN out and try to come back in from another PC and see what happens. Thanks for the advise.
- Copy Link
- Report Inappropriate Content
@d0ugmac1 Well, tried this out, and it did not block the traffic during the timeframes with the deny in place. Not sure if this is a bug or if I'm not configuring it correctly.
- Copy Link
- Report Inappropriate Content
Hmm, how about blocking the return path, ie block port 3389 outbound during your time window?
- Copy Link
- Report Inappropriate Content
Information
Helpful: 0
Views: 632
Replies: 7
Voters 0
No one has voted for it yet.