Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

priority is zone or network?

Hi sophos team,

I just want to confirm that if i create a rule is zone LAN to  zone DMZ and network is (GF)10.10.0.0 to (SERVER)192.168.1.1/32

is that same with zone ANY to zone ANY and network is (GF)10.10.0.0 to (SERVER)192.168.1.1/32?

the priority is ZONE or NETWORK?



This thread was automatically locked due to age.
Parents
  • Ahmad,

    nice question. Anyway think like "AND operator" so:

    If source zone is "......" AND network is "......" the rule applies to. So it is not a priority concept but Logic Operators. You should always be restricted as possible when you deal with a firewall.

    In this case, do not use ANY but always chosse the correct zone where the traffic is coming from.

Reply
  • Ahmad,

    nice question. Anyway think like "AND operator" so:

    If source zone is "......" AND network is "......" the rule applies to. So it is not a priority concept but Logic Operators. You should always be restricted as possible when you deal with a firewall.

    In this case, do not use ANY but always chosse the correct zone where the traffic is coming from.

Children