Hi
The default profile for security was clone, this new profile has the same action. And I subscribe the profile to the policy by enable web filtering but the rules not function. Ihave two zone untrust(ethernet 0/0) and trust (bgroup0) in type layer 3. Finally the routing entries are in both zone 0.0.0.0 /0 via mdem (gateway) interface and 0.0.0.0 via untrust-vr gateway.
Thanks for your response