Evening all..
So I have been working on my XG firewall skills (v18) and decided the best way to learn is to wipe out the defaults and start from scratch..
So far so good.. But I do have a question on rules setup regarding source in the rule
When I setup SOURCE to be LAN, #PORT1.10 (vlan example), any and do the same for two other vlans, I can ping interfaces and nothing else. But when I go to "Hosts and Services" and "IP host" and then proceed to add the IP network (call it 172.1.100.0/24) of #PORT1.10, then change the rules to reflect that (being LAN, IPnetwork, any), everything works like a charm.
I am wondering as to the WHY the #PORT does not work, but the IP NETWORK does?
Also, I have a VLAN internal group that opens each Vlan up to each other with block rules up top, but I don't think that would be the most efficient way to do that. My guess is that it might be better to have the block rules up top with a LAN,ANY,ANY and LAN,ANY,ANY rule at the bottom as opening each vlan individually to do the same thing is just over complicating.. Thoughts?
Thank you
This thread was automatically locked due to age.
