On 13 Sep 2004 12:10:48 -0700, [EMAIL PROTECTED] (matthew zeier) wrote:

>On the pf box itself, running a ping to a directly connected box, I get:
>
>64 bytes from 116.23.162.6: icmp_seq=1134 ttl=128 time=0.427 ms
>ping: sendto: No route to host
>ping: wrote 116.23.162.6 64 chars, ret=-1
>ping: sendto: No route to host
>ping: wrote 116.23.162.6 64 chars, ret=-1
>ping: sendto: No route to host
>ping: wrote 116.23.162.6 64 chars, ret=-1
>64 bytes from 116.23.162.6: icmp_seq=1138 ttl=128 time=0.493 ms
>
>What would cause that?  The physical interface never drops.
>
>

Are you running a default block policy of 

block log all ?

Sounds like your policy may be a tad asymmetric in the way its setting
states on various interfaces. 

greg

-- 
Felicitations, malefactors! I am endeavoring to misappropriate 
the formulary for the preparation of affordable comestibles. 
Who will join me?!

Reply via email to