My Surf SOHO’s (v 8.0.0 build 1429) WAN port is in the DMZ of my ISP’s DSL Modem to avoid double NAT.
I would like to block access to the SOHO’s admin UI from the Internet.
Setting “Web Admin Access” to “LAN Only,” however doesn’t accomplish this unless “Allowed LAN Network” is further restricted to one of my VLANs. Setting “Allowed LAN Networks” to “Any” permits WAN admin UI access via the public IP, e.g. from the browser on my cell phone, even if Web Admin Access is “LAN Only.”
Is that the intended behavior? Is there a way to restrict WAN admin access without restricting admin access to a single VLAN?