Stateful Inspection

  • I have a problem with internal routing!

    how can i deactivate statefull inspection?

    my problem, i route internal traffic (site2site vpn) and opt1 trafic over different interfaces.
    the traffic out point is opt1 ond the packets in will be wan(ipsec).

    any solution ?


  • Create two firewall rules. One to allow the packets out from LAN to OPT1, and one to allow the packets in from WAN to LAN.
    While creating each rule, click the "Advanced" button beside "State Type" in the Advanced Features area at the very bottom of the page. Set the dropdown to "none".

    To avoid security issues, narrow the source and destination to specific IP addresses, if you can.

Log in to reply