Intrusion Detection Exclude IP

Started by raid3868, July 02, 2020, 03:39:49 AM

Previous topic - Next topic
July 02, 2020, 03:39:49 AM Last Edit: July 02, 2020, 04:23:19 AM by raid3868
Dear all

I would like to ask is opnsense Intrusion Detection can exclude ip. Example i have a mail gateway with internal ip and i would to excluded from IPS/IDS so it will not scan traffic to mail gateway. So it will not break any traffic to mail gateway.

Or can i use Service:Intrusion Detection:Administration:User Defined

Enabled
Source IP: any
Destination IP: <mail gateway IP>
SSL/Fingerprint : <blank>
Action: Pass

This can work ?

OPNsense 20.1.7-amd64

Tks

In Tab User Rules you can add a pass rule to exclude it