Proxy and a bypass port forward Nat Rule on LAN Interface Security Risk?

Started by Toxsickcity, January 23, 2025, 01:41:17 AM

Previous topic - Next topic
Hello fellow Opn Users,

I have experimented and finally feel I am winning with the HTTPS battle so some services which just stopped are now working due to a new rule I created.
The Nat Proxy port forward rule has all traffic flowing to 127.0.0.1 to the proxy server.
I had issues with things like back blaze and other services.

I have created a new Rule under NAT port forward and moved it above the http and https proxy rule and added a few ports in an alias to make it skip/ignore the http(s) proxy rule.
I understand it processes the rules top to bottom, and for the most it has worked for me.

I have limited knowledge in advanced networking and routing and I have a question.
I am concerned that I am port forwarding from anywhere to anywhere I am scared I am potentially allowing bad actors into my network due to this port forwarding rule.
I understand if someone wants in, they will get in!! but I want to at least have a safe / normal network and dont know if I have created a HUGE sign saying come on in!

Please take a look at the attached image to see configuration of the rule for which I want to know if my fears are warranted or not.
otherwise quickly answered? as my rule is on the LAN interface, having the port forward rule on LAN not WAN a reason for this to be safe?

Thank you,
Shaun.