Hi guys.
I could take a doubt.
I like to organize the firewall rules and always think about the order of the rules.
What would be the best position for DNAT rules? On top of all the rules? At the end of all the rules? Or does none of this make a difference?
I will have to free up access to more than 50 NVR from the vpn to another subnet, in another zone. It will be used a lot and will have an average of 15 ~ 20Mbps of troughput, limited in Traffic Shape. Can the rule's position interfere with performance?
As it is a rule that will be used a lot, the ideal would be to keep on top of all the rules, but I was unable to find a drawing with flow of packages in the XG box.
I would like to remove this doubt in both versions 17.5 and 18.
Is there a design with the packet flow in XG?
Sorry for the question, I come from iptables and knowing that order of rules helps a lot in tunnig.
This thread was automatically locked due to age.