On Tue, Nov 05, 2002 at 07:19:18PM +0100, Camiel Dobbelaar wrote: > You are not keeping state on int_if. Add 'keep state' to the 'lo0, enc0, > $int_if' rules above.
After the default block on all interfaces, he's passing everything statelessly on ep0 with quick... > Or remove the very non-obvious 'flags /S' rules. Though this is not the solution, I'd also restrict those to the interface that is filtered statefully (tl0). Daniel