16
General Discussion / [SOLVED] How can I restrict device to the local network only with one exception?
« on: November 25, 2017, 12:34:32 am »
What I would like to know might be common knowledge for some of you, but since I am very new to OPNsense I don't know how to do this. What I would like to do is restrict access TO and FROM a particular device on the network to the local network only. I don't want anyone on the Internet to be able to connect to it, which I assume is the default unless you make a specific rule to forward ports to it. BUT, I also don't want it to be able to make an outgoing connection to anything outside the local network. So far, is that possible, and if so how would I do that? The device does have a fixed IP address on the local network.
If that is possible, then the second part is, this device periodically sends a status email to me and therefore it needs to connect to my ISP's mail servers using SMTP. This is an address of the form smtp.mailserver.com. So if possible I want it to be able to connect to that one specific address, and that address only.
In other words, I want it to have open access to and from the local network (everything connected to the LAN port), but to basically not know the Internet exists except for the mail server. How would I do that in OPNsense? Or is it even possible? Thanks in advance for any help with this!
If that is possible, then the second part is, this device periodically sends a status email to me and therefore it needs to connect to my ISP's mail servers using SMTP. This is an address of the form smtp.mailserver.com. So if possible I want it to be able to connect to that one specific address, and that address only.
In other words, I want it to have open access to and from the local network (everything connected to the LAN port), but to basically not know the Internet exists except for the mail server. How would I do that in OPNsense? Or is it even possible? Thanks in advance for any help with this!