Basic Filtering


The main FireBrick® configuration pages provide a list of filters which you can control.

The list is in three sections - traffic allowed in to your network, traffic allowed out of your network, and other.

Each item in the filter list is either allowed (shown in green) or ignored (shown in red), and can be changed using the checkbox next to the item and pressing the Update quick firewall settings button. It's that simple!

Filters that are ignored will result in the packets being dropped, as this is the default filter action.

Internet traffic operates on three basic protocols, two of which have port numbers. Specific applications on the internet will use one of these protocols and one or more ports. For example web pages normally work on TCP port 80. Port numbers under 1024 are normally called privileged ports. Many network services are on these ports including web pages, email, news, etc.

It is important to realize that the filters operate in order and work on the first match found. Filters which are being ignored (suspended) are skipped over, but the first filter which matches will apply, whether it allows or drops the traffic.

You will notice that initially there is no login or security check to allow you to set the basic filtering. This is to make it simple and easy to use. By default it is only possible to get to this configuration page from the inside of your network (the LAN ports). You should, however, consider setting up login security on your FireBrick®. Once you have done this you can still allow some settings to be changed if you wish, but you can configure which settings are available on the main screen.