On 7/15/07, Braden Mailloux <[EMAIL PROTECTED]> wrote:
Dear Readers;
#Default block policy block log all
You have a nice "block log all" policy. How about using the debugging capabilities of this policy? Run tcpdump on the pflog0 interface to see the blocked packets. tcpdump -eni pflog0. Unless you have a routing issue, this will give you all the clues you need. =Adriaan=