On Fri, Dec 05, 2008 at 01:56:04PM -0600, Todd T. Fries wrote: > It was not stated, but I've setup firewalls in the past, I presume you > have a firewall that is doing 'block in' as a catchall (which catches > the fragments) .. > > Set your return policy on that rule if you wish it to return.
ok but the block-policy already says "return". adding "return" to this has no affect: block return in log (all) on $ext_if Am I missing something here? Regards, C. -- 020 7729 4797 http://blog.playlouder.com/

