1
General Discussion / Re: Does floating rule without select any interface in rules apply to all interface?
« on: February 04, 2022, 11:30:49 am »
To chemlud:
Quote
Enable DHCP, reserve an IP based on MAC (and enable static ARP) and allow access to GUI/ssh only for this IP (and a backup machine with another MAC. Or use a USB-RJ45 as a key to your router, that can be used on different machines). An additional layer of security.Thank you for telling me a way to hardened the security. I think maybe I can try to use it in someday. The reason I think I will not need it for now is because the machine is in a safe place. And the rules will mainly use to block the client from the other interfaces (NIC of WAN,OPT1... and VPN). But as I read in the Openvpn website "one should never place so much trust in a single security component" a addition security seem always be good, so maybe I can try to use it if in needed.