Hi @msrini-MSFT ,
Please can you ask the product team to alter the validation as it doesn't make sense, and also allow the blocking of anything which isn't internet?
I do block on the inbound on other subnets but want to use a zero trust model incase a subnet is accidentally opened, or in some cases where we have had to open a subnet inbound on virtual network for on-prem devices.
Thanks,
Mark