Hi Everyone:
Have anyone can tell me have something I doing wrong? the Firewall rule in Simple Zone + SNAT just not work.
I have setup an Simple Zone with SNAT, and connect a VM into the Simple Zone. until now the VM was getted the IP 172.16.1.2 and the goto default GW(10.36.4.256) through NAT(172.16.1.1). That is all work fine.

And then because I want to limit the VM not to touch any host in 10.36.4.0/24 except the defaul GW(10.36.4.256) and still success go out to Internet, so I added some firewall rules in the Simple Zone as follow


After click "Apply" above firewall rules change in the SNAT0001, the VM in SNAT0001 is still get response from ping 10.36.4.93!

After that, I turn on the VM firewall and setup same rules, it work grate as charm.. ^_^!
Have anyone can tell me have something I doing wrong? the Firewall rule in Simple Zone + SNAT just not work.
I have setup an Simple Zone with SNAT, and connect a VM into the Simple Zone. until now the VM was getted the IP 172.16.1.2 and the goto default GW(10.36.4.256) through NAT(172.16.1.1). That is all work fine.

And then because I want to limit the VM not to touch any host in 10.36.4.0/24 except the defaul GW(10.36.4.256) and still success go out to Internet, so I added some firewall rules in the Simple Zone as follow


After click "Apply" above firewall rules change in the SNAT0001, the VM in SNAT0001 is still get response from ping 10.36.4.93!

After that, I turn on the VM firewall and setup same rules, it work grate as charm.. ^_^!