- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
Content translations are temporarily unavailable due to site maintenance. We apologize for any inconvenience. Visit our blog to learn more.
10-08-2018 06:05 AM
Thats what I thought, they can be picked up by another rule and still be allowed
10-11-2018 06:51 AM
correct, it simply means "match everything except these"
10-11-2018 08:41 AM
When there are specific IPs within a given range that you would want to exclude. For example; If I created a policy that says that everything within my 'GUEST' zone is denied from accessing anything within my 'SERVER' zone I would likely want to negate my switches so they could actually access NTP servers and DHCP services.
10-11-2018 09:08 AM
Then those IP's that you negate from that rule can still match on another rule and be allowed. I can see where it might save you time if you have alot of IP's to block and only a few that you don't want blocked on that rule
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!