OPNsense Forum

English Forums => General Discussion => Topic started by: morik_opnsense on December 01, 2022, 03:16:00 AM

Title: General rule of thumb when creating rules
Post by: morik_opnsense on December 01, 2022, 03:16:00 AM
Hello experts,

After google searching here + reddit, I wanted to distill best practice when creating new firewall rules for new interfaces. Of course, this doesn't fit every use-case however i wanted to understand if the general direction seems right. A penny for your thoughts?

Background:

Thumb Rules:

I read somewhere that the first rule should always be to allow traffic into that interface's address. But, I'm unable to ascertain whether that is a good idea.

Attached is a sample config for my IoT VLAN.