Dear all,
can somebody suggest me on the firewall setup for my network? At the moment, I have none but masquareade srcnat on ether1-gateway and with source address the vpn (I think added automatically by quick setup).
my topology is like this,
My home network connected to internet using router/modem ZTE F660. Since I also use the home network for cable tv, I cannot make my modem as modem only.
My home network is in 192.168.1.x subnet
My mikrotik is connected to port 1 on the modem. I give IP for my modem 192.168.1.111. My mikrotik is setup only using quick setup and in subnet 192.168.88.x (mikrotik default).
I setup VPN on my mikrotik and already working.
I have a server with IP 192.168.88.211 connected to my mikrotik. With this setup :
- my server(192.168.88.211) can connect to the internet
- my server(192.168.88.211) can access another server with IP 192.168.1.90
- all devices on 192.168.1.x cannot access 192.168.88.x
Now, what I have want to do is adding firewall to
- my server(192.168.88.211) and all devices on 192.168.88.x cannot access any devices on 192.168.1.x except the modem as the gateway on 192.168.1.1
- I do not want anyone who connect via VPN to be able to connect any devices on 192.168.1.x
- Any other suggestion?
Thank you in advance.
Kind regards,
Daniel