Am 03.05.2010 um 12:13 schrieb Axel Rau:

----------------
pass in on green from <intra_nets> to <intra_nets> \
                                                tag GREEN_GREEN $tcp_options
...
pass out quick on green tagged GREEN_GREEN $tcp_options
----------------
Why are packets between vlan8:network and em0:network blocked?

The problem was a quick rule somewhere in front of the "pass in" above.
The quick rule used a table which contained a wrong address, caused by a bad "!" with a macro in the table definition. (I would be happy to understand how to exclude more than one address).

Axel
---
[email protected] PGP-Key:29E99DD6 +49 151 2300 9283 computing @ chaos claudius

Reply via email to