Axl
March 1, 2021, 12:43pm
1
Hello,
I want to open some ports only to specific IPs. I've found it can be done into the field named "Source IP address", but this field only accepts one IP, and I want to put three IPs.
I've found than the field "Source MAC address" can have multiple values, but not for the IP field.
Does anybody know how to do so?
Regards,
Alex
1 Like
LuCI Network > Firewall > Traffic Rules > Rule > Edit
Source address > -- Add IP -- > -- custom -- > Space-separated IPs > Enter
...
Save > Save & Apply
1 Like
mikma
March 1, 2021, 12:48pm
3
There are multiple settings labeled "Source IP address"... (Which page are you using?)
Axl
March 1, 2021, 1:50pm
4
I've tried to do so, but Luci says the IP is invalid. I've tried to separate IPs with colon or semi-colon, with no luck.
Axl
March 1, 2021, 1:54pm
6
Network --> Firewall --> Port Forwards
Select the Port Forward rule and click on "Edit".
The 5th field on the new screen.
This is a known limitation for OpenWrt firewall redirects.
It should be possible to work around with IP sets:
https://openwrt.org/docs/guide-user/firewall/firewall_configuration?s=ipset#options2
Kentril
November 5, 2023, 11:49am
8
Hello, I'm having the same issue as above. I have list of IPs. I've created list in /etc/firewall.user:
config ipset
option name 'ssh_outside'
option match 'src_net'
option enabled '1'
list entry 'xxx.yy.zz.cc.'
list entry 'xxx.yy.zz.cc.'
But how can I add this list on rules instead of 1 IP?
Do I need install a special package?
I have OpenWrt 19.07.
Thank you
Pico
November 5, 2023, 12:56pm
9
could you post the output of
ubus call system board
1 Like
Kentril
November 6, 2023, 4:41pm
11
ubus call system board
{
"kernel": "4.14.133",
"hostname": "OpenWrt",
"system": "Qualcomm Atheros QCA956X ver 1 rev 0",
"model": "TP-Link Archer C6 v2",
"board_name": "tplink,archer-c6-v2",
"release": {
"distribution": "OpenWrt",
"version": "19.07-SNAPSHOT",
"revision": "r10255-96cc390d88",
"target": "ath79/generic",
"description": "OpenWrt 19.07-SNAPSHOT r10255-96cc390d88"
}
}
I'm thinking to upgrade to the newest version.
Kentril
December 5, 2023, 7:35am
12
Upgrading to the newst version solved the problem. Thank you.
1 Like