PeterUK Guru Member
- Last Active
I give it some uptime to see if the change still works.
So after a reboot due to another problem which fixed that now the Device registration refresh fail so I change the routeing rule for source any:
in SecuReporter Upload fail and not using the routing rule Comment by PeterUK May 5
So I updated my test as I found it did'nt work that way I hoped but I now understand how long do WILDCARD FQDN last for.in How long do WILDCARD FQDN last for if not updated? Comment by PeterUK May 5
(Quote) If their is going to be a fix then thats good can't wait for it.
Not sure I follow the problem why it can't work today guess its a programmer thing the way you link DNS to policy control rule and that this low TTL lookups w…in How long do WILDCARD FQDN last for if not updated? Comment by PeterUK May 5
No changes to the USG40 that would cause this I can still do a Geo IP updates and Device registration refresh without timeout.
You should be able to setup a setup your end with the following
Due to the way real …
(Quote) What security reason! its a safe thing to do you can have a allow rule for *ttvnw.net with a above schedule block rule for *ttvnw.net.
Whats the big problem?in How long do WILDCARD FQDN last for if not updated? Comment by PeterUK May 4
You can force zones to use given WAN in routing rule from a given incoming interface to next hop.
You only need to configure ge5as P4,P5 and P6 are now linked to ge5
The rogue traffic would likely be dropped I would think as the targeting IP 192.168.0.100 is not to the WAN IP.
But if you did a NAT rule to forward a port to 192.168.0.100 then if on the WAN you have from source address 192.168.2.100 to…