We want systems on the LAN and OPT1 networks to be able to go anywhere and do anything they like. Systems on the OPT2 network should only be able to see other systems within the lab networks.
The firewall blocks all traffic by default. To enable traffic the way we want it, configure the following rules:
Allow LAN to any.
Allow OPT1 to any.
Allow OPT2 to LAN net.
Allow OPT2 to OPT1 net.
Allow OPT2 to OPT2 net.
Be sure to apply all changes. All systems on the network should be able to communicate with each other now, and all but the OPT2 network should have WAN access. Go ahead and power down the system and make a snapshot called “Firewall Configured.”