fbpx

What would be a practical use for jump in MikroTik firewall?

Using the “jump” action in MikroTik RouterOS firewall rules allows you to organize and optimize the processing of firewall rules in a more efficient and structured way.

“Jump” is useful for directing traffic to a custom chain based on specific criteria, without needing to repeat multiple filter conditions in multiple rules.

Not only does this make the firewall configuration cleaner and easier to manage, but it can also improve performance by reducing the number of evaluations the firewall needs to perform.

Here is a practical example of how “jump” could be used:

Practical Example: Traffic Segmentation by Type

Let's say you want to apply a specific set of firewall policies to different types of traffic, such as HTTP, HTTPS, and FTP, to improve the security of your network. Instead of creating multiple separate rules for each type of traffic in the main input chain, you can use the “jump” action to direct traffic to custom chains based on port or protocol.

  1. Define Custom Strings: First, create custom chains in the firewall for each type of traffic you want to handle separately. For example, http-traffic, https-traffic, and ftp-traffic.
  2. Jump Rules: Next, configure rules on the main input chain that use the “jump” action to direct traffic to the corresponding chain. For example:
    • A rule that redirects all traffic destined for port 80 (HTTP) to the chain http-traffic.
    • A rule that redirects all traffic destined for port 443 (HTTPS) to the chain https-traffic.
    • A rule that redirects all traffic destined for ports 20 and 21 (FTP) to the chain ftp-traffic.
  3. Apply Specific Policies: In each of these custom chains, you can apply specific rules tailored to the type of traffic. For example, you could block certain types of HTTP requests, allow only certain ciphers for HTTPS, or log all FTP connection attempts for auditing.

Advantages of Using “Jump”

  • Efficiency: Reduces the number of rules the system must evaluate for each packet, since traffic is pre-filtered by type.
  • Organization: Makes it easier to manage and understand firewall policies, as rules are logically grouped by function.
  • Flexibility: Allows you to adjust, update, or disable policies for specific types of traffic without affecting the rest of the firewall rules.

This modular and structured approach to firewall rule management makes “jump” a powerful tool in MikroTik RouterOS for network administrators looking to optimize the security and performance of their networks.

There are no tags for this post.
Did this content help you?
Facebook
Twitter
LinkedIn
WhatsApp
Telegram

Other documents in this category

Leave your comment

Your email address will not be published. Required fields are marked with *

Tutorials available at MikroLABs

No Courses Found!

DISCOUNT CODE

AN24-LIB

applies to MikroTik books and book packs

Days
Hours
Minutes
Seconds

Introduction to
OSPF - BGP - MPLS

Sign up for this Free course

MAE-RAV-ROS-240118
Days
Hours
Minutes
Seconds

Sign up for this Free course

MAS-ROS-240111

Promo for Three Kings Day!

KINGS24

15%

all the products

MikroTik courses
Academy courses
MikroTik books

Take advantage of the Three Kings Day discount code!

* promotion valid until Sunday January 7, 2024
** the code (KINGS24) applies to shopping cart
*** buy your course now and take it until March 31, 2024

New Year's Eve Promo!

NY24

20%

all the products

MikroTik courses
Academy courses
MikroTik books

Take advantage of the New Year's Eve discount code!

* promotion valid until Monday, January 1, 2024
** the code (NY24) applies to shopping cart
*** buy your course now and take it until March 31, 2024

Christmas discounts!

XMAS23

30%

all the products

MikroTik courses
Academy courses
MikroTik books

Take advantage of the discount code for Christmas!!!

**codes are applied in the shopping cart
Promo valid until Monday December 25, 2023

CYBER WEEK DISCOUNTS

CW23-MK

17%

all MikroTik OnLine courses

CW23-AX

30%

all Academy courses

CW23-LIB

25%

all MikroTik Books and Book Packs

Take advantage of the discount codes for Cyber ​​Week!!!

**codes are applied in the shopping cart
Promo valid until Sunday December 3, 2023

BLACK FRIDAY DISCOUNTS

BF23-MX

22%

all MikroTik OnLine courses

BF23-AX

35%

all Academy courses

BF23-LIB

30%

all MikroTik Books and Book Packs

Take advantage of the discount codes for Black Friday!!!

**Codes are applied in the shopping cart

codes are applied in the shopping cart
valid until Sunday November 26, 2023

Days
Hours
Minutes
Seconds

Sign up for this Free course

MAE-VPN-SET-231115

Halloween promo

Take advantage of discount codes for Halloween.

Codes are applied in the shopping cart

HW23-MK

11% discount on all MikroTik OnLine courses

11%

HW23-AX

30% discount on all Academy courses

30%

HW23-LIB

25% discount on all MikroTik Books and Book Packs

25%

Register and participate in the free course Introduction to Advanced Routing with MikroTik (MAE-RAV-ROS)

Today (Wednesday) October 11, 2023
7pm to 11pm (Colombia, Ecuador, Peru)

MAE-RAV-ROS-231011