Ghost traffic
Options
Hello,
I cannot access a service/port when the firewall (security policy) is enabled, but the traffic goes through when it is disabled.
However, I cannot see the traffic entry in the logs so I can whitelist it and reenable my firewall.
Kindly advise
Model: USG1100
I cannot access a service/port when the firewall (security policy) is enabled, but the traffic goes through when it is disabled.
However, I cannot see the traffic entry in the logs so I can whitelist it and reenable my firewall.
Kindly advise
Model: USG1100
0
Accepted Solution
-
Hi @nacho,The asymmetric route led to the issue.Create a policy based route on the L3 device where under the firewall to ensure the return traffic through the firewall.The issue was resolved. Thanks your time.Kevin0
All Replies
-
Hi @nacho,
Please check you don't have the rule such like Src:LAN DST:WAN ACT:Block
And kindly provide your configuration via Private Message.
I'll check and give the advice.
Thank you
0 -
Okay i will send the configuration.
Actually it is WAN to DMZ0 -
Hi @nacho,
I saw each WAN to DMZ rules have restricted destination IP.
If only specific address cannot pass , please check you have the rule for the destination addresses.
If the issue still we can have the remote session and please send your available time.
Thank you
Kevin
0 -
Hi @Zyxel_Kevin
We can do on Friday(04/11/2022) - 9am gmt+10 -
0
-
Hi @nacho,The asymmetric route led to the issue.Create a policy based route on the L3 device where under the firewall to ensure the return traffic through the firewall.The issue was resolved. Thanks your time.Kevin0
Categories
- All Categories
- 442 Beta Program
- 3K Nebula
- 228 Nebula Ideas
- 130 Nebula Status and Incidents
- 6.6K Security
- 648 USG FLEX H Series
- 357 Security Ideas
- 1.8K Switch
- 86 Switch Ideas
- 1.4K Wireless
- 55 Wireless Ideas
- 7.1K Consumer Product
- 304 Service & License
- 496 News and Release
- 93 Security Advisories
- 31 Education Center
- 10 [Campaign] Zyxel Network Detective
- 5K FAQ
- 34 Documents
- 89 About Community
- 110 Security Highlight
Freshman Member
Zyxel Employee