Explanation of the "Allow Interface Trust" zone configuration option on SonicOS Enhanced Firmware
09/01/2022 79 People found this article helpful 494,237 Views
Explanation of the "Allow Interface Trust" zone configuration option on SonicOS Enhanced Firmware
Resolution for SonicOS 7.X
This release includes significant user interface changes and many new features that are different from the SonicOS 6.5 and earlier firmware. The below resolution is for customers using SonicOS 7.X firmware.
The Allow Interface Trust setting in the Add Zone dialog automates the creation of Access Rules to allow traffic to flow between the interface of a zone instance. For example, if the LAN zone has both the LAN and X3 interfaces assigned to it, checking Allow Interface Trust on the LAN zone creates the necessary Access Rules to allow hosts on these interfaces to communicate with each other.
Navigate to Object|Zones| configure zone and Enable Allow Interface Trust
Resolution for SonicOS 6.5
This release includes significant user interface changes and many new features that are different from the SonicOS 6.2 and earlier firmware. The below resolution is for customers using SonicOS 6.5 firmware.
The Allow Interface Trust setting in the Manage | Network | Zones | configure zone and Enable Allow Interface Trust. Add Zone window or the General tab of an existing zone automates the creation of Access Rules to allow traffic to flow between the Interfaces of a zone instance. For example, if the LAN Zone has both the LAN and OPT interfaces assigned to it, checking Allow Interface Trust on the LAN Zone creates the necessary Access Rules to allow hosts on these Interfaces to communicate with each other. In some WAN load balancing implementations, it may be desirable to enable "Allow Interface Trust" on the WAN zone so that machines on both assigned interfaces may communicate as needed.
Resolution for SonicOS 6.2 and Below
The below resolution is for customers using SonicOS 6.2 and earlier firmware. For firewalls that are generation 6 and newer we suggest to upgrade to the latest general release of SonicOS 6.5 firmware.
The Allow Interface Trust setting in the Network > Zones > Add Zone window or the General tab of an existing zone automates the creation of Access Rules to allow traffic to flow between the Interfaces of a zone instance. For example, if the LAN Zone has both the LAN and OPT interfaces assigned to it, checking Allow Interface Trust on the LAN Zone creates the necessary Access Rules to allow hosts on these Interfaces to communicate with each other. In some WAN load balancing implementations, it may be desirable to enable "Allow Interface Trust" on the WAN zone so that machines on both assigned interfaces may communicate as needed.
Related Articles
Was This Article Helpful?