USG Flex 200 Blocking with Application Patrol blocks everything
Options

thwartedEfforts
Posts: 10
Freshman Member



Hello all. I'm trying to block individual app traffic, but instead all traffic seems to trigger whatever Application Patrol rules I create.
What I'm using via NCC:
Zyxel USG FLEX 200 V5.30(ABUI.0)
Firewall🡒Configure🡒Security service
In the Application Patrol box tap the +Add button
Added an example profile for preconfigured app Twitter, as below


Tap the Create then Save to update the config
Firewall🡒Configure🡒Security policy
In the Security policy box tap +Add
Configured the new policy called SF_TWITTER using the profile created in the step above, as below

For Source I'm using lan1_192.168.5.0/24
For Destination I'm using Any
Action left as Allow here so log only
No other rules defined other than implicit allow and deny
Tap the Save button to update the config
My assumption at this point would be that only traffic matching the define app (i.e. Twitter) will trigger the policy rule. What happens is ALL traffic hits it and is logged

What am I missing? Thanks in advance.
What I'm using via NCC:
Zyxel USG FLEX 200 V5.30(ABUI.0)
Firewall🡒Configure🡒Security service
In the Application Patrol box tap the +Add button
Added an example profile for preconfigured app Twitter, as below

Tap the Create then Save to update the config
Firewall🡒Configure🡒Security policy
In the Security policy box tap +Add
Configured the new policy called SF_TWITTER using the profile created in the step above, as below

For Source I'm using lan1_192.168.5.0/24
For Destination I'm using Any
Action left as Allow here so log only
No other rules defined other than implicit allow and deny
Tap the Save button to update the config
My assumption at this point would be that only traffic matching the define app (i.e. Twitter) will trigger the policy rule. What happens is ALL traffic hits it and is logged

What am I missing? Thanks in advance.
0
All Replies
-
Duplicate thread. Replacement:
https://community.zyxel.com/en/discussion/13577/usg-flex-200-application-patrol-content-filtering-policy
I'm guessing this was held in a moderation queue, but without notification of that fact I assumed it had been deleted. This thread is safe to delete.0
Categories
- All Categories
- 435 Beta Program
- 2.7K Nebula
- 176 Nebula Ideas
- 119 Nebula Status and Incidents
- 6.1K Security
- 431 USG FLEX H Series
- 299 Security Ideas
- 1.6K Switch
- 79 Switch Ideas
- 1.2K Wireless
- 44 Wireless Ideas
- 6.7K Consumer Product
- 276 Service & License
- 428 News and Release
- 88 Security Advisories
- 31 Education Center
- 10 [Campaign] Zyxel Network Detective
- 4.2K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 83 About Community
- 89 Security Highlight