Grouped Ports with combined TCP/UDP

Example would be something like securing a domain controller so that clients can only access the required ports for AD functionality.

Currently I have to create at least 9 rules for TCP, another 4 for UDP.

With Network Port groups, this would be a single rule, maybe 2 if not mixing TCP and UDP ports.

This would allow for much less ACLs in the firewall rules table, which will be better for troubleshooting and system memory usage.

6 Likes

Or the ability to create “port lists” like grouped networks, that contain multiple ports, which then get referenced by firewall rules

yes exactly, It’s strange that an enterprise level firewall wouldn’t have this.

1 Like