Announcement

Collapse
No announcement yet.

Has anyone created a WAN Policy for the WAN interface?

Collapse
X
 
  • Filter
  • Time
  • Show
Clear All
new posts

  • Has anyone created a WAN Policy for the WAN interface?

    and if so, what do they use it for? I'm guessing for hosting resources in your network but I'm not exactly sure.

  • #2
    A wan policy ? Nope, but I create IOT policys that say this network can go OUT and then block subnets around it. The policy also forces the traffic through the policy so it can push content or application monitoring etc etc.

    Comment


    • #3
      Originally posted by dashpuppy View Post
      A wan policy ? Nope, but I create IOT policys that say this network can go OUT and then block subnets around it. The policy also forces the traffic through the policy so it can push content or application monitoring etc etc.
      Ok, that makes me feel better. I'm doing the same thing. I have several VLANs setup on one UniFi access point that are isolated. I use Filter Policies as I don't have a managed switch so Untangle is doing everything. I have a few policies setup but they all use the default policy as it's parent. My default policy has very basic rules, blocking ads is about it. My kids policy is more restrictive. Is that a good practice?

      I installed Lubuntu on a really old Dell XPS M1330 laptop acting as my "Server". It's running my Unifi Controller and it's just humming away. I'm actually pretty proud of it. It struggles running java but so far so good.

      Click image for larger version

Name:	2022-07-28 23_05_16-Untangle - untangle715 — Mozilla Firefox.png
Views:	1
Size:	31.2 KB
ID:	384410 Click image for larger version

Name:	2022-07-28 23_10_13-Untangle - untangle715 — Mozilla Firefox.png
Views:	1
Size:	28.6 KB
ID:	384411

      Click image for larger version

Name:	2022-07-28 23_08_32-Untangle - untangle715 — Mozilla Firefox.png
Views:	1
Size:	8.6 KB
ID:	384412 Click image for larger version

Name:	2022-07-28 23_12_01-Untangle - untangle715 — Mozilla Firefox.png
Views:	1
Size:	47.1 KB
ID:	384413
      Last edited by MP715; 07-28-2022, 09:25 PM.

      Comment


      • #4
        Originally posted by MP715 View Post
        I have a few policies setup but they all use the default policy as it's parent. My default policy has very basic rules, blocking ads is about it. My kids policy is more restrictive. Is that a good practice?
        That's the general intent of Policy Manager! The alternative approach is to make your Default Policy more draconian, so that any traffic you haven't specifically moved into another policy is highly restricted or blocked altogether. This allows you to vet traffic in the network: everything is blocked until you explicitly allow it (by moving it into a less-restrained policy).
        Græme Ravenscroft • Technical Marketing Engineer
        ('gram', like the unit of measurement)
        he/him
        How can we make Arista ETM products better?

        Comment

        Working...
        X
        😀
        🥰
        🤢
        😎
        😡
        👍
        👎