What is the difference between firewall policy access settings "deny" and "reject" on NXC?

Zyxel_Kathy
Posts: 76
Zyxel Employee




Both the "deny" and "reject" settings will block the traffic. The difference in their behavior is that "deny” will drop the traffic without any response, while the "reject" option will block the traffic and report back to the client that the destination is unreachable.
For Example:
1. If the firewall is set up to "deny", you will see the "Request time out" message appear.

2. If the firewall set up to "reject", you will see the "Destination host unreachable" message instead.


2. If the firewall set up to "reject", you will see the "Destination host unreachable" message instead.

Tagged:
0
Categories
- All Categories
- 431 Beta Program
- 2.6K Nebula
- 170 Nebula Ideas
- 114 Nebula Status and Incidents
- 6K Security
- 385 USG FLEX H Series
- 294 Security Ideas
- 1.5K Switch
- 78 Switch Ideas
- 1.2K Wireless
- 42 Wireless Ideas
- 6.7K Consumer Product
- 267 Service & License
- 412 News and Release
- 87 Security Advisories
- 31 Education Center
- 10 [Campaign] Zyxel Network Detective
- 3.9K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 85 About Community
- 83 Security Highlight