3.2.6 Firewall

The Firewall tab is used for setting access to 2N® LiftGate from a selected network. If the firewall is inactive, there are no restrictions for the given network; if it is active, only the accesses defined in the table below are allowed. 


  • Enable for mobile network (MN)– allow access of firewall from a mobile network.
  • Enable for WAN – allow access of firewall from a WAN port.
  • Enable for LAN – allow access of firewall from a LAN port.
  • Enable for VPN – allow access of firewall from a VPN.

Caution

  • Receiving incoming ICMP and ICMPv6 packets is not restricted by enabling the firewall.

The Accept connection table includes the allowed accesses from the Internet.


  • Protocol – TCP or UDP.
  • Port – port number (0 to 65535).
  • Interface – for selected connection (MN, WAN, LAN, VPN) or any.
  • Source IP – for a remote device with this address, or with any address if the parameter is empty.
  • Description – user definable field for a connection.
  • ADD NEW – add a new connection.

Caution

  • If the firewall is active and access should be allowed to the device web interface from the selected network, the TCP and port 80 (HTTP) or 443 (HTTPS) should be enabled.
  • Enabling the LAN firewall will limit the proper functioning of DNS and DHCP servers. To maintain their correct function, it is necessary to enable their connection.
PortServiceProtocolInterface
53DNS serverUDPLAN
67DHCP serverUDPLAN, VPN
68DHCP klientUDPMN, VPN, WAN,
80HTTP serverTCPLAN, MN, VPN, WAN
443HTTPS serverTCPLAN, VPN, MN, WAN
546DHCPv6 klientUDPVPN, WAN
547DHCPv6 serverUDPLAN