Block traffic on usg40 for different networks
alexia_net
Posts: 9 Freshman Member
Hi. I have a situation on my new USG40 firewall. The default network on this firewall is 192.168.1.0 / VLAN1. I have created a new VLAN, which got as IP newtork 192.168.11.0.
Now I want to block the traffic betwenn 192.168.1.1 and 192.168.1.11 and vice-versa.
I have created 2 rules in POLICY CONTROLL. Denying the traffic both ways, but it seems that the rules do not work. The rules are assigned with the highest priority.
I can still ping 192.168.11.1 from 192.168.1.0 network.
The only think I can think of is that the management network, has access to whatever other network defined. Hoever this is kind a strange. I do not think that it can be like this. So probably I am doing something wrong.
Any tips much appreciated. Thank you!
Now I want to block the traffic betwenn 192.168.1.1 and 192.168.1.11 and vice-versa.
I have created 2 rules in POLICY CONTROLL. Denying the traffic both ways, but it seems that the rules do not work. The rules are assigned with the highest priority.
I can still ping 192.168.11.1 from 192.168.1.0 network.
The only think I can think of is that the management network, has access to whatever other network defined. Hoever this is kind a strange. I do not think that it can be like this. So probably I am doing something wrong.
Any tips much appreciated. Thank you!
#Biz_Security_January
0
Comments
-
Sorry, one mistake. I want to block the traffic between 192.168.1.0 and 192.168.11.0
0 -
It has to do with the order the FW read the rules.0
Categories
- All Categories
- 415 Beta Program
- 2.3K Nebula
- 141 Nebula Ideas
- 94 Nebula Status and Incidents
- 5.6K Security
- 218 USG FLEX H Series
- 262 Security Ideas
- 1.4K Switch
- 71 Switch Ideas
- 1K Wireless
- 39 Wireless Ideas
- 6.3K Consumer Product
- 245 Service & License
- 382 News and Release
- 81 Security Advisories
- 27 Education Center
- 8 [Campaign] Zyxel Network Detective
- 3.1K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 83 About Community
- 71 Security Highlight