It is possible to do this in the firewall in 2 ways:
1- Change the default policies fwall-prot and prot-fwall to DROP, then create specific rules with the same source-destination to whitelist devices;
2- Create rules in fwall-prot and prot-fwall to whitelist specific devices, then 2 more rules to drop all traffic to the subnet; the DROP rules must be below the ACCEPT rules in the list of rules.
Comments
0 comments
Please sign in to leave a comment.