Security policy rule blocks all traffic at all times

Han9n_
Han9n_ Posts: 3  Freshman Member
First Comment Friend Collector

Hi,

I am trying to allow traffic here between 8 AM and 9.30 PM and block it at all other times.

What it does instead is blocking traffic at all times. What's wrong here, and how to fix it?

Thanks a lot!

All Replies

  • Zyxel_Kay
    Zyxel_Kay Posts: 1,103  Zyxel Employee
    Zyxel Certified Network Engineer Level 2 - Nebula Zyxel Certified Network Engineer Level 2 - WLAN Zyxel Certified Network Engineer Level 2 - Switch Zyxel Certified Network Engineer Level 2 - Security

    Hi @Han9n_

    Could you please enable Zyxel support access and share your Nebula organization and site name with us? We’d like to take a closer look at your site settings and logs.

    Kay

    Share your feedback through our survey, make your voice heard, and win a WiFi 7 AP! https://bit.ly/2024_Survey_Community

  • smb_corp_user
    smb_corp_user Posts: 168  Master Member
    5 Answers First Comment Friend Collector Second Anniversary

    I could be wrong, but it looks like you have set your DENY rule (Schedule) to be active Always instead of having a specific time limit. I would have thought you could set the time Schedule to be the opposite of the one you have set for your Allow Schedule, which according to your picture seems to be 8-21.30 . So I would suggest setting your DENY Schedule to be 21.30-8 (or something close to those times, if there needs to be a 1 minute gap (or something like that).

    Maybe you have tried that already, or perhaps it is not necessary (I don't know much about that setup), it is very possible that I could be mistaken. :-)

  • Han9n_
    Han9n_ Posts: 3  Freshman Member
    First Comment Friend Collector

    I enabled Zyxel support access & sent you a private message about the information you requested.

  • Zyxel_Kay
    Zyxel_Kay Posts: 1,103  Zyxel Employee
    Zyxel Certified Network Engineer Level 2 - Nebula Zyxel Certified Network Engineer Level 2 - WLAN Zyxel Certified Network Engineer Level 2 - Switch Zyxel Certified Network Engineer Level 2 - Security

    Hi @Han9n_

    We replicated the similar scenario on our end, and the security policy rules is functioning as expected.

    Could you enable the “Log” option for both security policy rules? If traffic continues to be blocked during the scheduled time, please reach out to us. We’d like to review the event log to see which rule the traffic is triggering.

    Kay

    Share your feedback through our survey, make your voice heard, and win a WiFi 7 AP! https://bit.ly/2024_Survey_Community

Security Highlight