This shows you the differences between two versions of the page.
| Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
| restrict-edit [2024/11/02 20:26] – [Editing Access Restriction Rules] -Formatting hogwild | restrict-edit [2025/09/15 15:16] (current) – [Access Restriction] hogwild | ||
|---|---|---|---|
| Line 13: | Line 13: | ||
| Restrictions are done based on rules and a schedule. | Restrictions are done based on rules and a schedule. | ||
| - | Access Restriction only blocks traffic routed outbound to the Internet. It **cannot** restrict access between (switched) LAN clients. It also cannot block traffic when the device is used as a wireless bridge. For such scenarios, see the HOWTOs | + | Access Restriction only blocks traffic routed outbound to the Internet. It **cannot** restrict access between (switched) LAN clients. It also cannot block traffic when the device is used as a wireless bridge. For such scenarios, see the HOWTOs: [[wireless_filtering|Wireless MAC filtering via script/ |
| \\ | \\ | ||
| Line 24: | Line 24: | ||
| * Only certain destinations | * Only certain destinations | ||
| * Only certain ports | * Only certain ports | ||
| - | * Only certain protocols, or applications | + | * Only certain protocols or applications |
| * Only certain HTTP activity | * Only certain HTTP activity | ||
| * Combinations of the above | * Combinations of the above | ||
| Line 41: | Line 41: | ||
| All rules are listed here. However, adding/ | All rules are listed here. However, adding/ | ||
| - | \\ {{:access_restriction_overview_cropped.png?775}} | + | \\ {{:: |
| Line 52: | Line 52: | ||
| \\ | \\ | ||
| - | * To delete an existing rule, click on it on the Overview | + | * To delete an existing rule, click on it on the Overview |
| - | * To **Edit **an existing rule, click on it on the Overview | + | * To **Edit **an existing rule, click on it on the Overview |
| - | * To **Add** a new rule, click the // | + | * To **Add** a new rule, click the // |
| * On the Rule Editing page, sequential rule numbers will display \\ at the top left (For example: ID: 01) | * On the Rule Editing page, sequential rule numbers will display \\ at the top left (For example: ID: 01) | ||
| - | * These numbers will increment by 1 for each new rule you create.\\ | + | * These numbers will increment by 1 for each new rule you create. |
| - | \\ {{::access_restriction_editing_cropped.png?700x593}} | + | \\ |
| + | |||
| + | \\ {{::misc-access_restrictions-2025.3.png?800}} | ||
| + | |||
| + | \\ | ||
| \\ | \\ | ||
| - | \\ **Enabled: | + | \\ **Enabled: |
| \\ | \\ | ||
| - | **Description: | + | **Description: |
| \\ | \\ | ||
| - | **Schedule: | + | **Schedule: |
| \\ | \\ | ||
| - | * All Day - checking this applies the rule for the entire day \\ (for all days selected in the Day section). Enabling this makes the \\ Time options disappear. | + | * All Day - checking this applies the rule for the entire day \\ (for all days selected in the Day section). Enabling this \\ makes the Time options disappear. |
| * Every Day - checking this applies the rule every day. \\ Enabling this makes the Days options disappear. | * Every Day - checking this applies the rule every day. \\ Enabling this makes the Days options disappear. | ||
| - | * Time - here, set the start time and end time the rule will be applied. | + | * Time - here, set the start time/end time the rule will be applied. |
| * Days - here, set the Days on which this rule will be applied. | * Days - here, set the Days on which this rule will be applied. | ||
| \\ **Type:** | \\ **Type:** | ||
| - | * Normal Access Restriction - sets the rule to include all options | + | * Normal Access Restriction - sets the rule to include all \\ options |
| - | * Disable Wireless - this rule will disable all WiFi interfaces | + | * Disable Wireless - this rule will disable all router |
| \\ **Applies To:** | \\ **Applies To:** | ||
| * All Computers/ | * All Computers/ | ||
| - | * The Following... - the rule will apply to only the specified network clients. \\ Add clients by entering their MAC or IP address in the MAC/IP Address field, \\ then clicking // | + | * The Following... - the rule will apply to only the specified network clients.\\ Add clients by entering their MAC or IP address in the MAC/IP Address field, \\ then clicking // |
| - | * All Except... - the rule will apply to all network clients except the one specified. \\ Think of this as similar to a client whitelist. \\ Add clients by entering their MAC or IP address in the MAC/IP \\ Address box, then clicking // | + | * All Except... - the rule will apply to all network clients except the one specified.\\ Think of this as similar to a client whitelist. \\ Add clients by entering their MAC or IP address in the MAC/IP \\ Address box, then clicking // |
| \\ **Blocked Resources: | \\ **Blocked Resources: | ||
| Line 98: | Line 102: | ||
| More than one rule can be configured, click the //Add// button to add a rule. | More than one rule can be configured, click the //Add// button to add a rule. | ||
| - | | + | \\ |
| - | * Port - select a source port/ | + | |
| + | | ||
| + | * Port - select a source port/ | ||
| * Application - select which application to block. | * Application - select which application to block. | ||
| * Address - select source and/or destination IP address, \\ then enter the IP address in the next field. | * Address - select source and/or destination IP address, \\ then enter the IP address in the next field. | ||
| Line 130: | Line 136: | ||
| This function will block downloads of certain file types, including: | This function will block downloads of certain file types, including: | ||
| - | |||
| - | \\ | ||
| * ActiveX - this will block Windows controls (which usually have \\ an.ocx or .cab file ending). | * ActiveX - this will block Windows controls (which usually have \\ an.ocx or .cab file ending). | ||
| Line 147: | Line 151: | ||
| \\ | \\ | ||
| - | **Cancel: | + | **Cancel: |