Hi,
does the srx support security zones and policies on Layer2 ethernet switching?
i got two sec zones, untrust and trust, and two Interfaces ge-0/0/0.0 and ge-0/0/15.0 family ethernet-switching, both in default vlan.
untrust
> interface ge-0/0/0.0
trust
> interface ge-0/0/15.0
and no policy from-zone untrust to-zone trust. (so everything from 0 to 15 should be denied by default).
but i can still access a pc connected to ge-0/0/15 from a pc connected to ge-0/0/0 (ping, rdp...).
do i miss something?
thx in advance,
chris