is it possible to add DDNS addresses into the Target List for use in firewall rules?
I currently have CNAME records set up for all family members, e.g. hello.theirdomain.com that ties to their firewalla DDNS name.
I have a private target list that lists all of these subdomains (which really just points to each firewalla DDNS name).
I then have a firewall rule to only allow users coming from source IPs in that target list, but this method DOES NOT work.
Question: is it possible to do this but have firewalla figure out the subdomain points to their WAN IP? Or do we need to actually write out the IP in the target list (obviously that would be an issue for dynamic WAN IPs)?
-
The allow may tied into the port forward, see this https://help.firewalla.com/hc/en-us/articles/1500009502622
-
That's what I did, I tied the target list to a port forward. But the CNAMEs didn't work (e.g. hello.theirdomain.com), it only works when I use the IP address for hello.theirdomain.com in the target list. That defeats the purpose obviously since it's a dynamic WAN IP that'll eventually change.
Is it actually possible to use domain name references instead of IPs for inbound source?
Please sign in to leave a comment.
Comments
2 comments