- My Forums
- Tiger Rant
- LSU Recruiting
- SEC Rant
- Saints Talk
- Pelicans Talk
- More Sports Board
- Winter Olympics
- Fantasy Sports
- Golf Board
- Soccer Board
- O-T Lounge
- Tech Board
- Home/Garden Board
- Outdoor Board
- Health/Fitness Board
- Movie/TV Board
- Book Board
- Music Board
- Political Talk
- Money Talk
- Fark Board
- Gaming Board
- Travel Board
- Food/Drink Board
- Ticket Exchange
- TD Help Board
Customize My Forums- View All Forums
- Show Left Links
- Topic Sort Options
- Trending Topics
- Recent Topics
- Active Topics
Started By
Message
UCG-MAX / Firewall in general
Posted on 1/20/26 at 7:19 pm
Posted on 1/20/26 at 7:19 pm
This is all pretty new to me but i honestly expected it to be a little easier..
I'm able to block devices and traffic (even though it shows traffic, it comes across as blocked in the flow and the devices themselves will not load pages) What i can't seem to do, is ALLOW pages...
How can i set up one device on my wired network that essentially circumvents the cybersecurity checkboxed categories ( i did even select all and then take it out when applying)
I feel like i'm missing something easy
I'm able to block devices and traffic (even though it shows traffic, it comes across as blocked in the flow and the devices themselves will not load pages) What i can't seem to do, is ALLOW pages...
How can i set up one device on my wired network that essentially circumvents the cybersecurity checkboxed categories ( i did even select all and then take it out when applying)
I feel like i'm missing something easy
Posted on 1/20/26 at 8:03 pm to GrammarKnotsi
Deny will trump an allow
idk if the "hamburger approach" is still applicable, but it's meant to serve as tenant for creating deny/allow/deny rule structure....
would probably get more direct feedback with chatgpt or such, so that you could get it straightened out interactively
idk if the "hamburger approach" is still applicable, but it's meant to serve as tenant for creating deny/allow/deny rule structure....
would probably get more direct feedback with chatgpt or such, so that you could get it straightened out interactively
Posted on 1/20/26 at 8:16 pm to GrammarKnotsi
Not sure about that device but access control in networking in general these days is first match instead of apply all. The firewall will apply the first rule matching your criteria and not read the rules below.
This is opposite of OPN/pfsense that apply all so that bottom has more weight (but quick rules use the new method).
Both are confusing but it’s for performance so only need read until find match.
This is opposite of OPN/pfsense that apply all so that bottom has more weight (but quick rules use the new method).
Both are confusing but it’s for performance so only need read until find match.
Posted on 1/20/26 at 8:40 pm to Dallaswho
I remember reviewing a set of firewall rules (300 lines) at a client and seeing the first rule as "permit IP any any." Airline with billions of revenue.
Do you know how few auditors understand this?
quote:
The firewall will apply the first rule matching your criteria and not read the rules below.
Do you know how few auditors understand this?
Posted on 1/21/26 at 6:50 am to LemmyLives
Thanks for the responses, its kind of the direction i was going..
I know when i audit at work, the rule order matters and had been drying to reorder mine at home to make it work too..
I think my wall is that simply putting allow all does not do that and block with nothing in it, does the opposite of that..
living and learning and GPT has been failry helpful in the block column
I know when i audit at work, the rule order matters and had been drying to reorder mine at home to make it work too..
I think my wall is that simply putting allow all does not do that and block with nothing in it, does the opposite of that..
living and learning and GPT has been failry helpful in the block column
Popular
Back to top

2






