What's new
  • SNBForums Code of Conduct

    SNBForums is a community for everyone, no matter what their level of experience.

    Please be tolerant and patient of others, especially newcomers. We are all here to share and learn!

    The rules are simple: Be patient, be nice, be helpful or be gone!

Skynet - Block all as default, allow by exception

ss_pam

Occasional Visitor
Hello,

1. How can I block all connections as default and only allow whitelisted ip lists via Skynet? Equivalent to setting the iptables INPUT, OUTPUT and FORWARD policy to block and then allowing only specific ip addresses to connect to WAN.

2. I currently use "Firewall - Network Services Filter" + "Filter table type = Allow List" to use the merlin gui firewall to achieve this result but would like to also use Skynet so that I can use whitelist lists. How does skynet effect the iptables rules produced by the gui firewall, will it override these policy settings? i.e my current gui setup makes iptables policy = block, will skynet re-set the policy = allow and then only block from the skynet blacklists or do the gui firewall policy settings persist?

3. I appreciate that this is not a Diversion thread but it works in tandem with Skynet lists, the same questions apply to use of diversion, can it be used to achieve my desired results and what impact does it have on gui firewall rules/policy.

Many thanks for any feedback
 

Latest threads

Support SNBForums w/ Amazon

If you'd like to support SNBForums, just use this link and buy anything on Amazon. Thanks!

Sign Up For SNBForums Daily Digest

Get an update of what's new every day delivered to your mailbox. Sign up here!

Members online

Back
Top