Thursday, September 26, 2019

pfSense-CE-2.4.4 firewall rules good practices? open ports 80/443/etc - Need advices.

link to my firewall and NAT rules: https://imgur.com/a/qLmjPjg

Hi,

I've setup pfSense-CE-2.4.4 on a dedicated server with a public IP for my company network (small startup). All is working and fine (VPN, routing, basic firewall).

I did a small and simple network audit with nmap and the results show me that TCP ports 80 and 443 are open. Of course this is not a surprise if you see my port-forward and firewall rules, i need some services running on my LAN behind the pfSense firewall to be accessible by the Internet.

But i don't think having ports 80 and 443 wide open on the WAN interface inbound is a good idea.

Can anyone help me find a proper solution at this security issue ?

Thanks a lot.

link to my firewall and NAT rules: https://imgur.com/a/qLmjPjg



No comments:

Post a Comment