OPNsense Forum

English Forums => General Discussion => Topic started by: guest34985 on December 16, 2022, 02:01:03 PM

Title: Basic Firewall Rule for IPv6 Guest Network
Post by: guest34985 on December 16, 2022, 02:01:03 PM
Hi everyone,

for my existing Guest Network I have got a firewall rule in place that basically drops all connection to private addresses (RFC1918) as a destination after allowing DNS and NTP.

Now if I wanted to have IPv6 in this Guest Network and grant guests access to the Internet but no local access, what would such a rule look like?

Thanks in advance!
Title: Re: Basic Firewall Rule for IPv6 Guest Network
Post by: Patrick M. Hausen on December 16, 2022, 02:26:32 PM
Deny source:guest-network destination:all-other-local-networks
Allow source:guest-network destination:any