Firewall

Creating firewall rules at Control Panel > Security > Firewall helps prevent unauthorized login and control service access. You can decide whether to allow or deny access to certain network ports by specific IP addresses.

To create a firewall rule:

  1. Select a network interface from the drop-down menu in the upper right corner.
  2. Click Create.
  3. In the Ports section, select one of the following:
  4. In the Source IP section, select one of the following:
  5. In the Action section, select one of the following:

You can view LAN and PPPoE firewall rules by selecting these interfaces from the box in the upper right-hand corner. At the bottom of the rule list you can select Allow access or Deny access to allow or deny any access requests that do not match an existing firewall rule for the respective interface.

Note:

Firewall rule behavior:

DSM Firewall will match rules according to priority. Once a rule is matched, it will be enforced and DSM Firewall will not continue matching remaining rules. If there are no rules matched, DSM Firewall will perform the default action specified in each interface.

Firewall rule priority:

  1. Rules defined in "All interface".
  2. Rules defined in respective interfaces for which the connection belongs to.
  3. Default rules in respective interfaces for which the connection belongs to.

____
* Applies to specific models only.
# This function includes GeoLite data created by MaxMind, available from http://www.maxmind.com.