Hi all:
Does any one know if Port forwarding rules are affected by Firewall rules?
Say I configure a port forwarding rule (on an MX with its WAN interface directly on the internet) to forward TCP 22 (SSH) to a server on a private subnet connected to the MX. Then say I don't want someone from 1.2.3.4 to SSH in so I create a firewall rule that looks like this:
Would someone from 1.2.3.4 still be able to SSH in? I tried something like this, but with RDP and I could still RDP in even though I had a firewall rule preventing any source IP and sourcing from the RDP port to my public IP and it still worked. It's as if the firewall rule isn't considered because of the port forward rule.