[Shorewall-users] Filtering on Ether type, not port

2022-03-02 Thread Peter Humphrey
Hello Shorewallers, My FritzBox vDSL modem-router is spamming my LAN server with HTTP (port 80) requests, and the makers say I should open that port to it. Or I could accept packets of EtherType 0x88e1 instead, regardless of port number. Opening port 80 sounds risky to me, so does Shorewall hav

Re: [Shorewall-users] Filtering on Ether type, not port

2022-03-02 Thread Peter Humphrey
Thank you Ruth. On Wednesday, 2 March 2022 15:29:50 GMT Ruth Ivimey-Cook wrote: > I wouldn't bother trying to filter on type, just filter on either FB's > (Mac or IP) address (and possibly dest IP) + port as well. SW on my LAN server is dropping all incoming packets to port 80, which in this cas

Re: [Shorewall-users] Filtering on Ether type, not port

2022-03-02 Thread Matt Darfeuille
On 3/2/2022 4:47 PM, Peter Humphrey wrote: Thank you Ruth. On Wednesday, 2 March 2022 15:29:50 GMT Ruth Ivimey-Cook wrote: I wouldn't bother trying to filter on type, just filter on either FB's (Mac or IP) address (and possibly dest IP) + port as well. SW on my LAN server is dropping all inco

Re: [Shorewall-users] Filtering on Ether type, not port

2022-03-02 Thread Tuomo Soini
On Wed, 02 Mar 2022 15:47:50 + Peter Humphrey wrote: > Thank you Ruth. > > On Wednesday, 2 March 2022 15:29:50 GMT Ruth Ivimey-Cook wrote: > > I wouldn't bother trying to filter on type, just filter on either > > FB's (Mac or IP) address (and possibly dest IP) + port as well. I take from