It appears that IP/Service groups can’t be edited.
IP/ Firewall
So, if I need to allow in a group of ports, say 1,3,5,7,9, 11-15
…and I can’t create a service group,
I’ll have to create 6 rules to handle the full range of ports, correct.
[One rule each for 1,3,5,7,9 and a rage rule for 11-15]
Is there any way around this? Am I missing something?
Ok, I can see that in the forward rules, at least using WinBox you can put in non-contiguous sets of source/destination ports. So, one doesn’t need a separate rule for each port/port-range. [I’d have to go back and see to say for sure, but I thought I’d tried to enter multiple ports via the command interface - and failed.]
It would still be REALLY nice to have a descriptive “group” name that you could assign all the ports to. Then you could see the group name, rather than some collection of ports that may or may not mean anything to the person looking at the rules.
[And yes, I know I can create a comment for each rule that describes it, and that’s fine - but again the abstraction of the grouping makes it a lot easier not to make repetitive mistakes by having to enter the ports in multiple rules.]