Hello!
I had the same problem with endian 2.5.1, so I wanted to do was to give access from the blue zone to a port of a PC in the green zone. In my case, the problem was that I activated a Routing Policy for all pc's in the blue area, (all pc's will use the uplink2
for everything), so the pc's in the blue never going to reach the green. I solved the problem by disabling that policy routing.
Later I added specific routes for the lan and then added the policy I mentioned earlier.
For those who want to give full access (bad idea) from blue to green (ping, etc), just add the rule in the inter-zone module:(source) blue - (destination) green - (service) any - (policy) Allow
In my case it was unnecessary to disable the proxy, or restart the computer or do something else.
Can corroborate this in efw 2.5.1 testing with a newly installed system. In my case I used virtualbox.
Sorry for my English but I'm usually much better reading than writing
Greetings.