Portmaster and SPN by Safing.io

“Force Block Incoming Connections” is enabled by default in the Global Settings for all apps to block all from LAN and internet.
But this option is in the highest priority and ignores or doesn’t respect your custom whitelists for any apps you want to set.

A tip:
How to switch from “Force Block Incoming Connections” to custom “Incoming Rules” in Global Settings:

  1. Disable “Force Block Incoming Connections”

  2. Change “Simple Interface” to “Advanced Interface” for GUI to show a hidden function “Incoming Rules
    Screenshot_20230320_194206

  3. Add “Allow localhost” and "Block *" in Incoming Rules, the behavior is like “Force Block Incoming Connections”
    Screenshot_20230320_194231

Done, global Incoming Rules respect your custom whitelists for any apps.

3 Likes