Guys,
I'm set up to use transparent redirect but I have a perculiar extended networking requirement. Port security on "lan connections to internet" is set to deny all except execptions, the idea being that if we do get a trojan its outgoing ports are limited to 80 & 443 so it cant drill holes ou to whatever malicious server it wants.
My son has decied he wants to be online with his PS3. This seems to take a scatter gun approach on its use of outgoing ports and is drilling holes all over the place. In DHCP I reserve IP address based on MAC address so basically, the network is hardwired and each machine has a known IP address. What I'd like to do in for "lan connections to internet" is to make a rule which only applies to his PS3 IP address. I dont think this is currently possible unless you can come up with a method.
I know I can set up TCP mapping for each port to redirect explicitly to his machine but if his brother want to do the same, that will break this solution.
So, will it be possible to constrain a firewall port rule to an IP address (or assummed user) in wingate 200X or can you suggest an alternate solution today.
Many thanks
Neil