I have a issue with my firewall on my USG
I have two vlans setup, Vlan 10 and 40
I have a PC on vlan 10 and a server on vlan 40
I have a rule setup to stop cross talk between the vlans, which works fine.
I then went to set a rule to allow ssh and http between the PC and the server.
First I found that I had to set a rule for both directions, PC->Server and then a reply back from Server -> PC
So I created a group with both the server and the PC's IP addresses and set a single rule from group to group
Rather than having two rules for each direction.
This worked fine.
I then went to add a port group to the rule to limit it to just ssh (22), and applied it to the firewall.
If I allow any traffic it works fine, but the moment I add a port restrction it breaks.
Screenshots attached for reference.