Community discussions

MikroTik App
 
stam
newbie
Topic Author
Posts: 25
Joined: Mon May 16, 2011 11:36 am

Feature Request: Firewall Rules visual grouping

Tue Sep 14, 2021 2:07 pm

Hello,

I dig out a very old request (viewtopic.php?t=103231) from another user but i think this feature will be very useful for everyone.
I would really appreciate a change in winbox that makes possible to visualy group firewall rules. Firewall rules on many routers are quite a lot, and it becomes more and more difficult to manage them. If i can combine them in visual groups that can be collapsed or expanded, it will be much more easier to manage.

An answer on this request previously was to use chains, from the functional prospectus chains is a solution, but this doesn't solve the visual issue.
@kiler129
 
User avatar
rextended
Forum Guru
Forum Guru
Posts: 11967
Joined: Tue Feb 25, 2014 12:49 pm
Location: Italy
Contact:

Re: Feature Request: Firewall Rules visual grouping

Tue Sep 14, 2021 3:29 pm

But is already present, use filter...
Select what is the only chain you want see... done.
 
User avatar
anav
Forum Guru
Forum Guru
Posts: 18958
Joined: Sun Feb 18, 2018 11:28 pm
Location: Nova Scotia, Canada
Contact:

Re: Feature Request: Firewall Rules visual grouping

Tue Sep 14, 2021 5:01 pm

A good reason to keep filter rules simple and efficient.
I thought jump chains were another way of grouping that does what you ask?
 
User avatar
k6ccc
Forum Guru
Forum Guru
Posts: 1490
Joined: Fri May 13, 2016 12:01 am
Location: Glendora, CA, USA (near Los Angeles)
Contact:

Re: Feature Request: Firewall Rules visual grouping

Wed Sep 15, 2021 12:29 am

I thought jump chains were another way of grouping that does what you ask?
Jump chains also allows shortening the number of rules that the router has to process for for any given packet. For example a rule that performs some filter jumps to a chain that will have several more rules related to that type of traffic. For example a rule in the input chain that jumps only for ICMP traffic. Then an ICMP chain that takes care of various ICMP rules - this of course assumes that you have some ICMP rules (maybe DDNS detection or only certain ports or sources can ping as examples).

And for God's sake, keep all the rules in each chain sorted together. Does not make much difference to the router, but sure makes it easier for us human beings to read.
 
cwildermuth
just joined
Posts: 7
Joined: Tue Oct 13, 2015 9:07 pm

Re: Feature Request: Firewall Rules visual grouping

Thu Jan 12, 2023 6:10 am

I was kind of surprised to see that you are not able to "lock" rules together in groups, so moving one, moves them all.... doesn't this seem obvious??

Granted, the whole Firewall/Filter Rules UI needs a lot of work. Column/Table format is less than ideal.
 
User avatar
anav
Forum Guru
Forum Guru
Posts: 18958
Joined: Sun Feb 18, 2018 11:28 pm
Location: Nova Scotia, Canada
Contact:

Re: Feature Request: Firewall Rules visual grouping

Thu Jan 12, 2023 2:31 pm

I never look at my rules in winbox I always run export for a much better visual experience. :-)
 
User avatar
rextended
Forum Guru
Forum Guru
Posts: 11967
Joined: Tue Feb 25, 2014 12:49 pm
Location: Italy
Contact:

Re: Feature Request: Firewall Rules visual grouping

Thu Jan 12, 2023 4:03 pm

(also I...)

Who is online

Users browsing this forum: Bing [Bot], Google [Bot] and 54 guests