On 2008-05-08, Jon Radel <[EMAIL PROTECTED]> wrote: > > You appear making use of the default pass rule for all your outbound > traffic, as I didn't notice a single rule that applied to outbound > traffic (other than your block port 0, CARP, PFSync, and ping rules). I > don't believe that can be counted on to establish state.
Unless I missed anything in the commits from the last couple of days, the implicit "pass" rules definitely do not establish state.