Hi,
I have certain port opened in router, that is nat-ed to one lan ip:port. But its amount of traffic with all my dumb firewall rules just dont seem to match my routers cpu power... I would like to excempt that traffic from firewalling altogether, in both directions. Or somehow route this traffic to my other router, which could then deal with firewalling only that specific traffic? Possibly without removing ways to bandwidth-limit that traffic if need arises.
I know I can fasttrack certain traffic, but I hear it also removes any chance to rate-limit that traffic. I could probably notrack that traffic? Could I possibly avoid nat-router firewall already at routing stage and shovel it out to port x on lan side?
Probably I am describing some very common technique for networking people. What is the possibly good ways to accomplish that - giving one router a break from conntracking and firewalling etc of specific lan ip?