Prevent other Access rules from matching policy-based VPN traffic

Access rules that do not have any Source VPN definition can match any traffic, including traffic that is received through a VPN. You can optionally use the Source VPN cell to match traffic based on whether the traffic is coming from a policy-based VPN tunnel.

When the Source VPN cell is set to match policy-based VPNs, the rule only matches traffic from the selected policy-based VPNs.

For more details about the product and how to configure features, click Help or press F1.

Steps

Insert the following type of rule:
Table 1. Rule for allowing traffic except if it arrives through VPNs
Source Destination Service Action Source VPN
Set as needed. Set as needed. Set as needed. Set as needed. Select Match traffic based on source VPN, then select Rule does not match traffic from any VPN.