INTRA Zone , means same zone traffic , so traffic coming from one interface and going to another interface , and both interface are member of the same zone. by default INTRA zone traffic is permitted , no need for security policy
INTER Zone , means different zones traffic , so traffic coming from one interface and going to another interface , and each interface is member of separate/different zone. by default INTER zone traffic is blocked ,you need to define security policies to permit traffic
if you enable INTRA Zone block , so you need to define security policies to permit traffic in the same zone , find below an example : Trust is the zone name , you need to define address book first, I defined PC1 and PC2 addresses which are connected to zone Trust
set address Trust PC1 192.168.1.11 255.255.255.255
set address Trust PC2 192.168.1.12 255.255.255.255
set policy name allow-ping from Trust to Trust PC1 PC2 ping permit
//this policy named allow-ping , allow icmp traffic initiated from PC1 to PC2 (same zone Trust) , action permit , allow traffic .. so from zone Trust to zone Trust , from PC1 to PC2 , application ping , action permit
Regards