Block traffic on usg40 for different networks
alexia_net
Posts: 9
Hi. I have a situation on my new USG40 firewall. The default network on this firewall is 192.168.1.0 / VLAN1. I have created a new VLAN, which got as IP newtork 192.168.11.0.
Now I want to block the traffic betwenn 192.168.1.1 and 192.168.1.11 and vice-versa.
I have created 2 rules in POLICY CONTROLL. Denying the traffic both ways, but it seems that the rules do not work. The rules are assigned with the highest priority.
I can still ping 192.168.11.1 from 192.168.1.0 network.
The only think I can think of is that the management network, has access to whatever other network defined. Hoever this is kind a strange. I do not think that it can be like this. So probably I am doing something wrong.
Any tips much appreciated. Thank you!
Now I want to block the traffic betwenn 192.168.1.1 and 192.168.1.11 and vice-versa.
I have created 2 rules in POLICY CONTROLL. Denying the traffic both ways, but it seems that the rules do not work. The rules are assigned with the highest priority.
I can still ping 192.168.11.1 from 192.168.1.0 network.
The only think I can think of is that the management network, has access to whatever other network defined. Hoever this is kind a strange. I do not think that it can be like this. So probably I am doing something wrong.
Any tips much appreciated. Thank you!
#Biz_Security_January
0
Comments
-
Sorry, one mistake. I want to block the traffic between 192.168.1.0 and 192.168.11.0
0 -
It has to do with the order the FW read the rules.0
Categories
- All Categories
- 164 Beta Program
- 1.7K Nebula
- 86 Nebula Ideas
- 62 Nebula Status and Incidents
- 4.7K Security
- 236 Security Ideas
- 1.1K Switch
- 50 Switch Ideas
- 908 WirelessLAN
- 27 WLAN Ideas
- 5.3K Consumer Product
- 172 Service & License
- 294 News and Release
- 65 Security Advisories
- 14 Education Center
- 911 FAQ
- 399 Nebula FAQ
- 249 Security FAQ
- 90 Switch FAQ
- 100 WirelessLAN FAQ
- 18 Consumer Product FAQ
- 55 Service & License FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 68 About Community
- 51 Security Highlight