A user asked, and I realized, that I don't really know how the firewall rules function in the AREDN software. Can someone point me to an explanation?
Orv W6BI
* the rules protect the node -- can't access anything except a service intended to be available -- ssh, telnet, http, snmp, iperf, etc. (if installed)
* the rules allow forwarding of traffic for the mesh node to serve it's core purpose: routing between dtdlink, wan, lan, and tunnels.
* incoming access from the WAN (internet) is blocked except services on the node intended to be accessible.
* support for advertised gateway and options in setup allowing LAN devices to access internet or not.
* does not block access between devices on the mesh (unless using NAT mode on a node's LAN).