EFW Support

Support => General Support => Topic started by: conceptmedia on Monday 27 May 2019, 09:56:58 pm



Title: Isolate Two Interface in The Same Zone
Post by: conceptmedia on Monday 27 May 2019, 09:56:58 pm
Hello all!
I've an UTM50 with v5.05 and 6 interfaces.
I've already managed to isolate two interfaces (eth0 and eth2) in the green zone.
I used the firewall inter-zone configuration and the /var/efw/inithooks/rc.firewall.local to bind the sub-net ips to each interface and to forbid the traffic between the two interfaces.
Now, I need to have just one computer with access to both interface 1 and 3. Is this possible? I've created an allow rule in the firewall inter-zone configuration before the deny rules but it does not work, I still cannot access interface 3 from a machine physically connect to interface 1.

Thanking you all in advance, I hope everybody has a very nice day.
Pedro Gomes


Title: Re: Isolate Two Interface in The Same Zone
Post by: Dark-Vex on Monday 03 June 2019, 05:23:00 pm
Hello,

you can follow this tutorial on Endian support portal:
https://help.endian.com/hc/en-us/articles/218144788-How-to-split-a-zone-in-sub-zones

Could you please paste or add the screenshot of the created rules? It's strange that they do not work..
Bear in mind that if you are an Enterprise user you can open a support ticket on https://help.endian.com