_______________________________________________________________________________________________________
_____________________________________________________________________________________________________
© Virtual Access 2017
GW3300 Series User Manual
Issue: 1.7
Page 269 of 372
28.2.2.3
Inter-zone forwarding
This section controls the traffic flow between zones. Selecting a source or destination
zone generates a Forwarding rule. Only one direction is covered by any forwarding rule.
Hence for bidirectional traffic flow between two zones then two rules are required, with
source and destination alternated.
Figure 134: The inter-zone forwarding section
Web Field/UCI/Package Option
Description
Web: Allow forward to destination zones
UCI: firewall.<forwarding label>.dest
Opt: dest
Allows forward to other zones. Enter the current
zone as the source.
Enabling this option puts two entries into the
firewall file: destination and source.
UCI firewall.<forwarding label>.src
Opt: src
Web: Allow forward from source zones
UCI: firewall.<forwarding label>.dest
Opt: dest
Allows forward from other zones. Enter the current
zone as the destination.
Enabling this option puts two entries into the
firewall file: destination and source.
UCI: firewall.<forwarding label>.src
Opt: src
Table 92: Information table for inter-zone forwarding settings
Note: the rules generated for forwarding traffic between zones relay connection tracking
to be enabled on at least one of the source or destination zones. This can be enabled
through the conntrack option or through masq.