> > that doesn't work either, dude. > expands to > pass in on rl0 from any to !1.2.3.4/32 > pass in on rl0 from any to !2.1.0.0/24 > one will always match. >
I've understood, i've to switch the rule from a pass to a block rule so my goal is reached. So the only way to accomplish that is with the next version of PF within OpenBSD 3.3 using table as Cedric point out !? Regards, Thelmo