cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
844
Views
0
Helpful
3
Replies

RV320 access rules

Tulga
Level 1
Level 1

Hello?

I use RV320 router.

Condition 1: I want to deny access to internet from LAN interface.

Condition 2: And allow only Kaspersky internet security ports.

So I added all Kaspersky ports to my router's service list. Then I allowed them on WAN1 and LAN interfaces. 

This is ports that I added: ( https://support.kaspersky.com/KSC/SP3/en-US/158830.htm ) 

And I denied all other services(1-65535) on LAN interface. 

Now, condition 1 works fine. but condition 2 is not working well. Kaspersky internet security couldn't connect to update and other servers. 

Please give me an advice.

1 Accepted Solution

Accepted Solutions

balaji.bandi
Hall of Fame
Hall of Fame

Can you should us the ACE/ACP Rule you created

 

basically this shouod work as below :

 

Rule 1 allow only specific which is related to any towards kaspersky allow

Rule 2 deny all.

 

Check the Logs what is not working to give an idea to make tweak, some vendors may not provide all detailed information, some may required different ports.

 

Kaspersky internet security couldn't connect to update and other servers. 

what  is defination of other servers, from Lan or over internet ?

 

https://www.cisco.com/c/en/us/support/docs/smb/routers/cisco-rv-series-small-business-routers/smb4286-access-rules-configuration-on-rv320-and-rv325-vpn-routers.html

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

View solution in original post

3 Replies 3

balaji.bandi
Hall of Fame
Hall of Fame

Can you should us the ACE/ACP Rule you created

 

basically this shouod work as below :

 

Rule 1 allow only specific which is related to any towards kaspersky allow

Rule 2 deny all.

 

Check the Logs what is not working to give an idea to make tweak, some vendors may not provide all detailed information, some may required different ports.

 

Kaspersky internet security couldn't connect to update and other servers. 

what  is defination of other servers, from Lan or over internet ?

 

https://www.cisco.com/c/en/us/support/docs/smb/routers/cisco-rv-series-small-business-routers/smb4286-access-rules-configuration-on-rv320-and-rv325-vpn-routers.html

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Hello?

I think update service runs on internet. But not sure that it uses web protocols. 

Hi

According to log, I found that KIS service runs on the HTPPS. Thank you.