Policy Control in USG FLEX 100

Options

Hi, I have a question about Policy Control in USG FLEX 100.

Default rules allow all traffic. They create two HOST objects, how to block traffic between them in LAN1? I tried to do it between two computers and despite different settings in the sections: From , To, IPv4 Source , IPv4 Destination and setting the Action tab to deny, computers can still ping and see shared resources in the network environment.

I understand that the rule should be in the Policies list before the default Policies?

What should a rule blocking traffic between two computers in Lan1 look like? Can I have an example please? Thank you for your help and have a nice weekend.

All Replies

  • mMontana
    mMontana Posts: 1,304  Guru Member
    First Anniversary 10 Comments Friend Collector First Answer
    Options

    how to block traffic between them in LAN1?
    You cannot in USG device. Because for communicate between them, USG is not involved at all.

  • Marcin_marcin
    Marcin_marcin Posts: 4
    First Comment
    edited February 2023
    Options

    Thank you very much for your posts. Have a great week.

Security Highlight