ClearOS Bug Tracker


View Issue Details Jump to Notes ] Issue History ] Print ]
IDProjectCategoryView StatusDate SubmittedLast Update
0022841ClearOSapp-network - Network Settingspublic2019-02-18 09:452019-02-23 19:58
ReporterNickH 
Assigned Todloper 
PrioritynormalSeverityfeatureReproducibilityalways
StatusclosedResolutionsuspended 
PlatformOSOS Version
Product Version7.5.0 Updates 
Target Version8.0.0 Beta 1Fixed in Version 
Summary0022841: Change firewall to isolate all LAN's/VLAN's from each other
DescriptionCurrently all interfaces designated as LAN can talk to any other LAN or HotLAN subnet. In some ways this is a strange behaviour as VLAN's are often used to segregate traffic and provide privacy on each LAN.

We can:
1 - Change the default firewall so that LAN interfaces can no longer talk to each other. This should include HotLANs, as again, the default behaviour is to allow any LAN to talk to a HotLAN but not vice-versa.
2 - Add an webconfig screen to allow interfaces to talk to each other. It only needs to be one-way as the default RELATED,ESTABLISHED rule would allow traffic back. This would avoid having to create Custom Firewall rules.
3 - Optionally allow the rule to to be bidirectional so if LAN-A can talk to LAN-B, then LAN-B can talk to LAN-A. This is the same as selecting two allows from 2) above.
TagsNo tags attached.
Attached Files

- Relationships

-  Notes
(0009951)
dloper (administrator)
2019-02-23 19:58

Migrated from: https://gitlab.com/clearos/feature-requests/issues/12 [^]

- Issue History
Date Modified Username Field Change
2019-02-18 09:45 NickH New Issue
2019-02-18 09:45 NickH Status new => assigned
2019-02-18 09:45 NickH Assigned To => dloper
2019-02-23 19:58 dloper Note Added: 0009951
2019-02-23 19:58 dloper Status assigned => closed
2019-02-23 19:58 dloper Resolution open => suspended