This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Lan or Dmz zone type?

When creating a new zone in XG, you have to specify if the new zone is LAN or DMZ. What does this mean? Those are existing zones, by definition the new zone is different to both, and existing rules won't yet apply to it.

What actually happens differently if a new zone is given as LAN-like or DMZ-like?

Thanks



This thread was automatically locked due to age.
Parents
  • MrMuishond,

    XG uses zone concept. You can create additional zone and add your physical nics/vlan to them. As you can see you can create Firewall rules from/to zones; allow services using zones under Administration > Device access.

    Think about you have multiple lan segments (Vlan, network range) and all of them belong to LAN zone and you need to create a firewall rule to deny certain traffic to all of them. You can create a LAN to WAN Firewall rule where the source network objects is any.

    Also once the rules are applied to zone, you can add/remove NICs without deleting network objects as it occurs on UTM9 for example.

    Zone are used to simplify the management. It taks time to understand but play a little bit and you will see the power.

    Regards,

  • Hi, lferrara

    Just to clarify: If I create

    -  CustZone1, CustZone2 with zone type LAN

    - CustZone3, CustZone4 with zone type DMZ

    If I create a firewall rule from LAN to WAN with source of Any (without specify zone), both CustZone1 and CustZone2 will be included.

    Regards

Reply
  • Hi, lferrara

    Just to clarify: If I create

    -  CustZone1, CustZone2 with zone type LAN

    - CustZone3, CustZone4 with zone type DMZ

    If I create a firewall rule from LAN to WAN with source of Any (without specify zone), both CustZone1 and CustZone2 will be included.

    Regards

Children
No Data