[Chilli] IPTABLES

Stephen Davies steve at base-it.co.uk
Wed May 28 18:54:56 UTC 2014


Hello all,

Does anyone have any experience with IPTABLES and setting up rules to 
prevent access from the captive portal clients to the local LAN. My 
wireless Coovachilli access point is plugged into my LAN and is assigned 
(HS_WANIF) an IP in the range of 192.168.1.x. The wireless captive 
portal side (HS_LANIF) is running a subnet of 10.1.0.x.

When a client is authenticated and granted internet access, the client 
can access services or ping any device in the private LAN of 
192.168.1.x. I want to prevent this for security reasons. I have tried 
and tried with various settings in IPTABLES but I am not getting very 
far. Does anyone have any pointers or rules examples. I am guessing this 
is a very important subject for public access Coovachilli installations.

Thanks
Steve



More information about the Chilli mailing list