This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

How can i allow asymmetrical routes?

Hi,

how can i allow asymmetrical route traffic in a zone? In other Appliance we have ever an extra checkbox for this. Alternativ we could insert an static firewall rule not based on established. At the moment all traffic will blocked with "Invalid Traffic"



This thread was automatically locked due to age.
Parents
  • Cyberoam KB is dead. Can anybody provide the solution?

  • If I recall correctly, from the ssh-->4.) Device Console:

    set advanced-firewall bypass-stateful-firewall-config add source_network X.X.X.X source_netmask X.X.X.X dest_network X.X.X.X dest_netmask X.X.X.X

    This will bypass everything ...

     

    -Scott

  • (Pasted from the first article I posted to)

    Just to add to this since following the main link lead to another link that was broken:

     

    In order to route from the LAN interface to a destination router on the same LAN interface I had to create an allow rule for Source LAN and Destination LAN before it would actually work.  

     

    IOW, this Sophos is my default gateway, but the route to a different subnet over L2 is via my core router.  Creating the ROUTE on this XG didn't work.  Only when I created the access rule from LAN to LAN did it allow the route to actually work.  

Reply
  • (Pasted from the first article I posted to)

    Just to add to this since following the main link lead to another link that was broken:

     

    In order to route from the LAN interface to a destination router on the same LAN interface I had to create an allow rule for Source LAN and Destination LAN before it would actually work.  

     

    IOW, this Sophos is my default gateway, but the route to a different subnet over L2 is via my core router.  Creating the ROUTE on this XG didn't work.  Only when I created the access rule from LAN to LAN did it allow the route to actually work.  

Children
No Data