Page 1 of 1

ACL @ Virtual Hub Level

Posted: Fri Mar 13, 2020 6:15 am
by Santosh.deoria
Dear All,

I want to setup ACL on virtual HUB level, requirement is:

i need to provide only RDP ( port 3389) access once VPN access is established.

user will connect VPN from Laptop and will take RDP of respective system \ server.

rest of the access should be blocked.

Thanks.

Re: ACL @ Virtual Hub Level

Posted: Sat Mar 14, 2020 12:01 am
by ddunston
You can use the Packet Filtering service:

https://www.softether.org/1-features/3. ... ket_Filter

Re: ACL @ Virtual Hub Level

Posted: Sat Mar 14, 2020 4:51 pm
by Santosh.deoria
Thanks for your revert, unfortunately i am failing to setup.
my requirement is, only allow 3389 and block rest of the packets.

please find the attached screenshot.

any suggestion please.

Thanks

Re: ACL @ Virtual Hub Level

Posted: Sun Mar 15, 2020 2:00 am
by ddunston
Hello,

You typed in "3389" as the protocol. You want to select "6/TCP" as the protocol and then under "Filtering Options for TCP Headers and UDP headers" add 3389 as the destination port. Type 3389 in the Minimum and Maximum field.

Re: ACL @ Virtual Hub Level

Posted: Sun Mar 15, 2020 3:27 pm
by Santosh.deoria
Thank you for your revert.

when i do setup as per the attached snapshot, my all traffic is getting blocked. my objective is only listed protocal should be allowed and rest should blocked.

am i doing something wrong. please suggest.

Thanks

Re: ACL @ Virtual Hub Level

Posted: Mon Mar 16, 2020 1:57 am
by ddunston
Santosh.deoria wrote:
Sun Mar 15, 2020 3:27 pm
Thank you for your revert.

when i do setup as per the attached snapshot, my all traffic is getting blocked. my objective is only listed protocal should be allowed and rest should blocked.

am i doing something wrong. please suggest.

Thanks
Hello. The problem now is that the rules only apply to inbound traffic. The last rule is blocking all traffic in and out. You'll need to include rules for outbound back to the clients so reverse the direction of your rules. The 3389 may be okay since it looks like you ticked the "ESTABLISHED" flag.

Re: ACL @ Virtual Hub Level

Posted: Mon Mar 16, 2020 5:24 am
by Santosh.deoria
Thanks again.
I am very new, can you please help to help how to create that outbound rule
Thanks

Re: ACL @ Virtual Hub Level

Posted: Tue Mar 17, 2020 3:47 am
by Santosh.deoria
Hi ddunston,

could you please help me on above request.

how to create that rule

Thanks