HI
I’m setting up an RUTX50 unit with 5 VLAN’s where two of the VLAN’s will need Internet access. The different VLAN’s are mapped to 4 firewall zones, but even with the firewall zones set to reject traffic I’m still able to ping between the zones.
VLAN Config:
The VLAN interfaces have been configured under LAN section with their corresponding IP’s, as eth0.11, eth0.12 etc.
I have created my firewall zones as:
Mgmt = {eth0.15}
MAHI = {eth0.11}
MyDefence = {eth0.12}
Semco = {eth0.13, eth0.14}
Only the Mgmt and MAHI zones will require Internet access and have been granted access to WAN zone via “Allow forward to destination zones = wan”
With the MAHI zone set to Input=Drop, Output=Drop and Forwarding=Drop I’m still able to ping from my Mgmt to the MAHI interface.
Full configuration of the device can be provided via email since i’m unable to upload it to this site.
For info have been in contact with 1st line of Teltonika support and hope that you can pick this one up.
Best regards, Martin


