This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

LAN to LAN block

I am trying to setup a rule to block LAN to LAN traffic

Port 1(LAN): 172.16.16.16

Port 2: WAN DHCP

Port 3(LAN): 10.10.10.1

I am able to pink from 172.16.16.17 to 10.10.10.1

I have setup firewall rule LAN to LAN network 172.16.16.0 (source) 10.10.10.0 (destination) block however still able to ping

Have tried changing Port 3 to new Zone LAN3 but still able to ping. Any ideas? 



This thread was automatically locked due to age.
Parents Reply
  • Thats was my next layer of thinking. If I put a device on the 10.10.10.0 address this should not be pingable. 

    Behind this I have a Ubquiti network which I have not connected (looking to disable NAT in next version). What I want to make sure is that users on a particular VLAN cannot access the Sophos interface or network associated with it which is why I am asking the question

Children