- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
We have two host part of same zone [vlan] but set up as isolated VLAN on switch.
The uplink of switch is connected to FW Zone.
And I am wondering whether a pre or post is necessary to allow intra traffic between these two hosts living in a isolated VLAN on switch.
I am a huge fan of a DENY ALL policy at the bottom. This approach would require a policy to allow traffic between the two systems. It also allows for segmentation of the vlan and hosts even if in the same IP subnet as other systems.
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!