Configuring a router to disregard or discard packets originating from a specific IP address
Configuring a router to disregard or discard packets originating from a specific IP address
Set up a firewall rule directing traffic from the specified IP to the bit bucket. Use a valid local network IP for the rule, not an invalid one.
You want to configure how a router handles network traffic, specifically ensuring it doesn't accept any incoming connections unless explicitly allowed. We need clarity on the desired behavior and any specific rules or restrictions.
They aren't doing it. If they were, your home network wouldn't have internet access. Your antivirus is recording an intrusion from a specific IP address. I need to configure the router's firewall to handle it before it escalates.
Typically, home routers block incoming data unless a specific rule is set or a connection exists. This means I can't forward packets to your PC right now. Giving you more details about your network would be useful.
This sounds unusual. It involves more than just letting the connection through—it also requires sending it to your desktop. Which security program are we referring to? Routers typically block any unexpected incoming connections by default. They only allow traffic that directly responds to an outgoing request. With a standard home router, you usually can't modify its firewall settings. At most, you can configure port forwarding to permit specific ports for incoming traffic, but that's the extent of control.
We're all familiar with 127.0.0.1 representing a loopback address. Are there any similar standards matching /dev/nul? Probably not.
Make sure all your ports are closed, and turn off upnp. That’s all you can do. By default, firewalls block all inbound traffic that doesn’t match an outbound request. What does this have to do with your router/firewall..? Or with an external connection, or an external based attack? What is actually happening, and what are you trying to fix/change? It seems like there is a bit of confusion with how firewalls work. Step through how traffic flows as if it was a physical pipe with valves. If the firewalls “valve” was open to the outside world, everything would be breaking into your network at all times, since it would t be blocking any of the flow from the outside world. If you want to allow some water in, you have to manually turn the valve to open, and allow in the traffic you want… this is a super rudimentary way of expanding it, but it’s a decent analogy. Firewalls pass data that was originally requested from a machine inside the network. Something inside the network MUST establish a connection first for data to be passed.
Your antivirus has identified an issue, indicating that permission was granted to open certain ports for incoming connections. For more details, please specify the antivirus model you're using. What message is appearing in the alert? Does it indicate the source port of the attack? Is the built-in firewall active on your Windows system? Are you disabling UPnP on your Asus router? Are there any background applications such as P2P software running? While you wait, update your antivirus and perform scans. Also check what information is visible in GRC's ShieldsUP!