OpenWrt Forum Archive

Topic: using openattitude luci firewall (netfilter/iptables).

The content of this topic has been archived on 7 Mar 2018. There are no obvious gaps in this topic, but there may still be some posts missing at the end.

Hi guys
  New user here. I recently manged to install openattitude on my embedded device. It works great!
The device has a ethernet lan interaface and a cellular 3g wan interface. Once the sim logs on it obtains a public routable ip address (i chose this type of sim because i wanted it to initiate ipsec).

In the interest of security, i installled iptables package heres where i ran into a  light problem.

By utilisiing the zone based firewaIls 'device (input)' I have secured the device from unauthorised incomming packets. I can also control packets originating from a device on the lan going out to the internet (nat'd traffic).
Now the problem, when i m consoled into the device i can not seem to create  rule to prevent packets generateed directly from the lan or wan interface to ip x.x.x.x or port.
I suspect its because the source does not let me specify a 'device' zone.

Any help appreciated.

Can anyone suggest a fix for this behaviour?

Thanks guys.

(Last edited by syf277 on 18 Apr 2014, 15:23)

come on,
  some one must know the answer to this?

The discussion might have continued from here.