Community discussions

MikroTik App
 
mperdue
Member Candidate
Member Candidate
Topic Author
Posts: 292
Joined: Wed Jun 30, 2004 8:18 pm

When to firewall or not

Thu Jan 25, 2007 9:50 pm

On my cisco routers I setup some basic firewalling rules.. or a better term would be filters. The things I filter are netbios packets ports 135 to 139, I also setup rules that only allow packets that destioned to the network and only allow packets out that are coming from that network.

Example:

Ethernet ip is 192.168.1.0 /24

on the serial interface I block all netbios incoming, block all ip that isn't destional 192.168.1.0 /24 and I block all outgoing netbios and ip that don't come form 192.168.1.0 /24

Is this a good practice to do on the mikrotik units as well? Do you recommend filterin on the eithernet port or the wireless interface?

-Michael
 
ferry
Frequent Visitor
Frequent Visitor
Posts: 75
Joined: Mon Jan 15, 2007 11:59 am

Filtering

Mon Feb 05, 2007 12:04 pm

I prefer to use ethernet filtering. Maybe at the first step u can filter ping attack (protocol icmp) by drop this and later maybe u can learn how to filter by see what the traffic in-out you want to limit, by seeing tools-torch. with this tool u can see the traffic passed the router.

Thx, :lol:
 
virtualmystic
Frequent Visitor
Frequent Visitor
Posts: 77
Joined: Fri Jan 19, 2007 7:09 pm
Location: Lahore, pakistan

Mon Feb 05, 2007 3:31 pm

i have cisco router that is serving almost 600 dialup users..i have same rules in cisco router as in my mikrotik..rather i have extra checks in my MKT as compared to cisco router. have a look at WIKI to get detailed filters that are recomended.


regds,
Asad

Who is online

Users browsing this forum: f008600, HellsEmissary and 34 guests