Hi, you misunderstand the purpose of the zone forward policy. It is not meant to catch traffic from a zone to another zone, but traffic relayed from one interface to another interface within the same zone.
Traffic from one zone to another zone is solely handled by the global forward policy in the defaults section (or individual rules). Your patch would change this long standing behavior, therefor NACK from me. ~ Jo
signature.asc
Description: OpenPGP digital signature
_______________________________________________ openwrt-devel mailing list openwrt-devel@lists.openwrt.org https://lists.openwrt.org/mailman/listinfo/openwrt-devel