I want block any incoming traffic from outside to one specific host, but allow him internet access so i need established connection. IN documentation i found example
Code: Select all
policy condition c1 destination ip 1.1.1.1 established
policy condition c2 destination ip 1.1.1.1
policy action drop disposition drop
policy action allow
policy rule r1 condition c1 action allow
policy rule r2 condition c2 action drop
qos apply
