I have a simple configuration with two interfaces, LAN and WAN, to bring my Network into the Internet. This Setup comes from installation-wizard and everything works fine.
My problem is, that the Admin-HTTPS-Service is enabled on LAN and WAN-side and I retrieve a warning in Control-Center to resolve this for security reasons. Of Course I only want to administrate the Device from LAN-Side. I have no machines on WAN-Interfaces-Side (pppoe to my ISP)
So I went to Applicance-Access-Tab and can see and manage a Matrix of Checkboxes (ZSL), which services are responsable from wich Interface:
I tried to remove the Checkbox for HTTPS-Admin-Service on WAN-Site and click apply. Suddenly I can't access the device any more. It was a pain to get this working again, because I have to enter spooky commands from google-hits in the extended admin-shell to get this working again and enable admin-gui on wan again.
Why do I have to enable this on WAN-Side, when my machine is on LAN-Site?