
Specific traffic can be allowed creating rules from Rules page. If disabled all traffic from green to red network is blocked.

To change the default policy for Internet access, enable or disable the Traffic to Internet (red interface) option. The default firewall policy allows all traffic from green to red interfaces (Internet). In this section you can change standard firewall behavior. The Traffic to Internet section inside the Settings page. Policies can be changed by creating specific rules between zones from the Rules page or by accessing To display the list of active policies click on the Policies button inside the Rules page. Traffic is allowed from left to right, blocked from right to left. Policies are the default rules to be applied when the network traffic does not match any existing criteria.įirewall policies allow inter-zone traffic accordingly to this schema: When a network packet passes through a firewall zone, the system evaluates a list of rules to decide whether Policy ¶Įach interface is identified with a color indicating its role within the system. Apply and revert ¶Įvery time the firewall configuration has been changed, modifications are not applied immediately but saved in a temporary store.įor the changes to take effect, click on the Apply button at the top right corner of the page.Īs long as the new rules created have not been applied, you can revert all changes by clicking the Revert button at the top right corner of the page. To avoid performance penalty on slow hardware, Netdata is not part of the firewall application and can be installed from Software center.

Real time charts display traffic and service statistics collected by Netdata. Smart search to quickly find existing rules or objects Routing rules to divert traffic on a specific WAN The Firewall application can be installed from Software center and includes: NethServer can act as firewall and gateway inside the network where it is installed.Īll traffic between computers on the local network and the Internet passes through the server that decides how toįirewall mode is enabled only if the system has at least one network interface configured with red role.
