centrumsigord wrote:OK guys .. I see now ... .
The last control question.. . the rule:
- rule 1, default accept, established/related, all protocols
should be only in VLAN 10, 20, 30 or is necessary apply this rule to _IN rulesets for the rest VLANs (40, 50) ?
Thanks!
Think of it like this. If you want a VLAN to be able to RESPOND to a conversation started by someone outside the VLAN, then you need this rule. So if you want to be able to ping VLAN_40 from anywhere else (say from VLAN_10) then you need the rule on VLAN_40 so that it can respond to the ping.