Whitelisting all traffic
Posted: Tue Nov 19, 2024 5:52 pm
Good morning, I would like some assistance on how can I approach this issue. I have an NVR with some cameras behind a Mikrotik router and my problem is that the ISP provider is telling me that I'm exceeding the bandwidth plan they assigned to me. Even without me checking the NVR my WAN port does show at capacity and I assume I'm being DDoS'ed. Sadly the ISP does not provide DDoS protection so I am on my own.
I just assumed that whitelisting the public IPs from where I am accessing would be enough and deny any other traffic using the RAW rules so I don't get my WAN saturated. And it did removed the saturation, but now I can't see the NVR.
I'm attaching the configuration of my router (censoring some IPs, sorry if that's a problem). As it is right now, when the drop rule is off, I can check the NVR by inserting the public IP of the router on the browser but with the rule on, I can't. at least I get to keep access to the winbox, but yeah.
I just assumed that whitelisting the public IPs from where I am accessing would be enough and deny any other traffic using the RAW rules so I don't get my WAN saturated. And it did removed the saturation, but now I can't see the NVR.
I'm attaching the configuration of my router (censoring some IPs, sorry if that's a problem). As it is right now, when the drop rule is off, I can check the NVR by inserting the public IP of the router on the browser but with the rule on, I can't. at least I get to keep access to the winbox, but yeah.