Inbound NAT
Looking for some help with this issue. Possibly an aspect of NAT/Networking that I am not understanding. I have VOIP devices that are exposing themselves to the internet and I cannot find a way to deny unwanted inbound traffic wan>lan. This is happening even though the devices are not being port forwarded or use a virtual IP (made by me). But I am able to complete port connection tests to the source NAT port from remote IPs that are not on the destination NAT table... how? My logs say that the wan>lan traffic enters via the same policyID that allows them to connect outbound.
This policy is locked to a specific set of IP addresses on SIP so it should not be allowing connections to anything else (if anything).
