Match default rule, DROP
        
            Options        
            
        
 
            
                
                    RBattaglia                
                
                    Posts: 4  Freshman Member
  Freshman Member
         
             
         
         
             
                         
            
                         Freshman Member
  Freshman Member 
         
         
             
         
                
                                    
                                  in Security             
            
                    Hello All,
I have a VPN100 that has been set up correctly with a service for the port I need to use to forward our accounting traffic to the server. I have also created the Policy Control to allow it to go to the correct IP address and have created a NAT rule to allow it in. But for some reason the default rule is constantly blocking it with
                
                I have a VPN100 that has been set up correctly with a service for the port I need to use to forward our accounting traffic to the server. I have also created the Policy Control to allow it to go to the correct IP address and have created a NAT rule to allow it in. But for some reason the default rule is constantly blocking it with
| Security Policy Control | Match default rule, DROP [count=3].  I don't know what I am doing wrong or missing.  I have now been on hold with Zyxel Support for almost an hour with anyone picking up - very frustrating.  Any suggestions would really help. | 
0    
            Accepted Solution
- 
            I was finally able to get through to a tech and found out that the settings for NAT rules are a bit different on the new VPN units versus the old USG ones. I had the WAN in the wrong location in the rule. All is working fine now.0
All Replies
- 
            Hi @RBattaglia,
 You may check corresponding security policy to see if it matches the criteria From and To.
 Most fail case on mismatch security policy criteria zone setting From and To.
 0
- 
            I was finally able to get through to a tech and found out that the settings for NAT rules are a bit different on the new VPN units versus the old USG ones. I had the WAN in the wrong location in the rule. All is working fine now.0
Categories
- All Categories
- 439 Beta Program
- 2.8K Nebula
- 200 Nebula Ideas
- 126 Nebula Status and Incidents
- 6.3K Security
- 497 USG FLEX H Series
- 323 Security Ideas
- 1.6K Switch
- 83 Switch Ideas
- 1.3K Wireless
- 49 Wireless Ideas
- 6.8K Consumer Product
- 286 Service & License
- 457 News and Release
- 89 Security Advisories
- 31 Education Center
- 10 [Campaign] Zyxel Network Detective
- 4.3K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 85 About Community
- 96 Security Highlight
 Guru Member
  Guru Member 
          
          
          
          
                     
                     
                     
                    