ZyWALL 5/35/70 Series User's Guide
11.3.2 From VPN Packet Direction
You can also apply firewall rules to traffic that comes in through the ZyWALL's VPN tunnels.
The ZyWALL decrypts the VPN traffic and then applies the firewall rules. From VPN means
traffic that came into the ZyWALL through a VPN tunnel and is going to the selected "to"
interface.
For example, by default the firewall allows traffic from any VPN tunnel to go to any of the
ZyWALL's interfaces, the ZyWALL itself and other VPN tunnels. You could edit the From
VPN To LAN default firewall rule to silently block traffic from the VPN tunnels from going
to the LAN computers.
Figure 108 From VPN to LAN Example
In order to do this, you would configure the SECURITY > FIREWALL > Default Rule
screen as follows.
224
Chapter 11 Firewall