We have an ASUS RT-AC68U in a SOHO environment with 30+ devices on the LAN side of the router. We use port forwarding in order to access certain computers and three NAS's remotely. The computers behind the router all have Norton Security installed, but the three NAS's and also mobile devices have no machine-level security (other than passwords).
Our network was scanned by Security Metrics yesterday and they were able to detect all machine names on the computers and NAS's behind the router, which surprised me. Then I realized that this is the problem with port forwarding ... these ports are open.
So, we would like the router to restrict incoming requests to only one or two laptops or mobile devices that use Microsoft Remote Desktop or an Ipad that uses the Qnap App to access files on the Qnap NAS.
The ASUS RT-AC68U does not seem to have this level of filtering, and restricting incoming traffic by MAC address seems to be problematic (based on a quick Google search).
What is the best way to stop incoming traffic, other than closing all ports?
Our network was scanned by Security Metrics yesterday and they were able to detect all machine names on the computers and NAS's behind the router, which surprised me. Then I realized that this is the problem with port forwarding ... these ports are open.
So, we would like the router to restrict incoming requests to only one or two laptops or mobile devices that use Microsoft Remote Desktop or an Ipad that uses the Qnap App to access files on the Qnap NAS.
The ASUS RT-AC68U does not seem to have this level of filtering, and restricting incoming traffic by MAC address seems to be problematic (based on a quick Google search).
What is the best way to stop incoming traffic, other than closing all ports?