I have been working on implementing zone based firewalls for a large client for some time now. They have multiple WAN sites, and lots of network segregation. It took me a while to figure out how to properly design and implement, then I started crui...