Aah, I didn't catch that one. So I assume that before ticking this and
saving I should fashion a rule to allow the LAN range such as:
Action: Pass
Interface: LAN
Protocol: TCP
Source: Any
Source Port Range: Any/Any
Destination Type: Single Host/Alias
Destination Address: 192.168.1.1
Destination Port Range: 80/80
Log: No
Description: Allow Web Admin from LAN interface
Then, along with the other rules previously mentioned, the DMZ would be
blocked and LAN would still have access? Just making sure before I possibly
lock myself out ;-)
>
>Do you have the antilockout rule disabled?
>
>-Chris
>
|