Skip to main content

Firewall and URL Filtering

The Firewall & URL Filtering page allows administrators to configure network security controls, manage traffic flow, and define access rules for inbound traffic and web content. It provides tools to control WAN exposure, configure port forwarding, isolate network segments, and apply URL filtering policies to enhance security and operational control.

image.png

How to Configure

  1. Login to Admin Panel
  2. Navigate to WAN/LAN > Firewall & URL Filtering



WAN Security 

Block ICMP Ping
When enabled, the device will drop ICMP echo requests (ping) received from the WAN interface, making the device unreachable via ping and reducing its exposure to network scanning and reconnaissance.

This setting affects WAN traffic only and does not impact LAN or management access.



Block Inbound Traffic
When enabled, all unsolicited inbound traffic from the WAN interface is blocked.

  • Enabled by default
  • It significantly reduces attack surface by preventing unsolicited connections from the internet

Toggle the switch to enable or disable inbound traffic blocking.



Advanced Options

LAN Isolation
LAN Isolation separates traffic between the Local/Management network and the Guest network, preventing devices on the guest network from accessing devices in the Local network.

  • Enabled by default
  • Recommended for guest and public WiFi environments

Toggle the switch to enable or disable LAN isolation.



Block P2P / Torrent Traffic
When enabled, this option limits or blocks common peer-to-peer and torrent-related traffic patterns to reduce bandwidth abuse and unauthorized file sharing on the network. Detection is based on traffic characteristics and protocol signatures rather than user identification, and effectiveness may vary depending on application behavior and encryption.

  • Disabled by default
  • Recommended for guest and public WiFi environments

Toggle the switch to enable or disable P2P / torrent traffic blocking.





Port Forwarding

Port Forwarding is a network feature that redirects incoming traffic from specific ports on the router to designated devices or servers within the local (LAN) network. This allows external devices or applications to access services hosted internally, such as web servers, game servers, or CCTV systems. 

Modes:

  • Disabled: No port forwarding.
  • DMZ Host: Redirects all WAN traffic to a specific internal LAN IP.
  • Port Forwarding: Forwards specific port traffic based on defined rules.

     

Configuration Options:

  • DMZ Host:
    • Select Source IP (WAN).
    • Define Destination IP for DMZ host.
    • Click Save DMZ to apply.

       

  • Port Forwarding:
    • Protocol: Choose from TCP, UDP, ICMP, or GRE.
    • Source IP/Port: Optional source restrictions.
    • Destination IP/Port: Define internal LAN host and port.
    • Port Forwarding Rules:
      • Add, remove, and manage forwarding rules.



URL/Website Filtering

URL/Website Filtering is a network security feature that allows administrators to control access to specific websites or online content. By blocking or allowing specific URLs, domains, or categories of websites, this feature helps enforce usage policies, improve productivity, and protect users from malicious or inappropriate content. It is commonly used in schools, businesses, and parental controls to regulate internet access.

Modes:

  • Disabled: No URL filtering.
  • Blacklist: Block selected URLs.
  • Whitelist: Allow only specific URLs.

     

Domain Management:

  • Add domains to the list for filtering.
  • Manage the list by adding or removing entries.