Security Policy, NO "ANY" option in drop down list.
All Replies
-
Do I have to create 2 rules "any(Excluding)" and another "Zywall"..
Yes its for better security like this
If you had from WAN to ANY that would mean include Zywall by ANY Excluding Zywall any but not Zywall
0 -
Thanks, I did create two rules.
Wan to "Any (Excluding Zywall)" deny
Wan to "Zywall" deny.
I do not understand how that would differ from Wan to "Any". If "Any" was an option?0 -
The default deny rule would of applied then needing Wan to "Zywall" deny unless you have a rule WAN (or any) to Zywall allow
0 -
Ah I get it, thank you… Yes, but I do.
China was trying to hack IPSEC Tunnel. Wan to Zywall required for IPSEC.I thought I was blocking China (Asia) high in the list, but the zyxel "Exclude" poked a hole in that.
I try never rely on the default rule.
I still think "Any" needs to be an option, just like the "any" in the "default rule".
I think it would be cleaner than making 2 rules for the same thing. Or allow us to choose multiple objects.0 -
Looks innocent enough.
But, I didn't recognize the 223.113.128.138.. It is not one of our remote corporations.
I back tracked that IP to china. Then got grumpy wondering how it got that far into my zyxel.0 -
Zyxel doesn't allow IPsec by FQDN .. which would be nice for dynamic gate addresses.
0 -
You likely have a rule from WAN to zyxel to allow VPN from any IP
The USG comes with default rules which you should check
0 -
Hello @jef
From/To is to configure the direction of travel of packets, which is only allowed to be set as a Zone instead of an interface or an address.
It's more like we determine ZyWall itself as a Zone, and Any as a Zone means any interfaces, and ZyWall is not considered as an interface.0
Categories
- All Categories
- 415 Beta Program
- 2.3K Nebula
- 141 Nebula Ideas
- 94 Nebula Status and Incidents
- 5.5K Security
- 216 USG FLEX H Series
- 262 Security Ideas
- 1.4K Switch
- 71 Switch Ideas
- 1K Wireless
- 39 Wireless Ideas
- 6.3K Consumer Product
- 243 Service & License
- 382 News and Release
- 81 Security Advisories
- 27 Education Center
- 8 [Campaign] Zyxel Network Detective
- 3K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 83 About Community
- 71 Security Highlight