Hi Are You sure that traffic between station A and B is hitting rule "WSASECURITYPOLICY0"? Under CLI please use command " show session all filter source x.x.x.x" to find out session id and next show session id yyyyy you will get details about this session, one of thouse information is: rule : name_of_security_policy that this traffic hitted. Second problem, Your Vulnerability Profile (MJVULNERABILITY00) still has default as an actions, please change to block (or reset both where is possible), please show us also exeptions that You made in this profile. In my opinion this security rule is too wide, You should use security profile as narrow as possible, also PA3020 is a NGF so You should allow aplications that You want to working on application-defaults ports. Automatically rest of traffic is bocked. NGFs should use whitelisting of applications, and You should focus on aplications that should work in Your enviroment. Please corect me if I'm wrong. With regards Slawek
... View more