I am a layman in Firewall and need to create an exception for only one computer can do a complete scan on the network (port scanner).
I need to create an exception rule for only the host 192.168.20.8 able to perform the scan. I have a few rules that block the port scanner and would only leave this computer (192.168.20.8 ) to access the full scan. Can someone help me set up?
Specify the IP you want to exclude (192.168.20. in the port scanner rule General > Src Address, ticking the invert field in front of it, so that the rule logic applies as long as source ip isn’t 192.168.20.8
Have a look at the address-list that rule is adding to, to remove 192.168.20.8 if its already there.