That is correct as of the recent version that doesn't install anti-spoof, anti-lockout rules, etc for the lan subnet.
Scott On 10/28/05, Dan Swartzendruber <[EMAIL PROTECTED]> wrote: > At 03:17 PM 10/28/2005, you wrote: > >On 10/28/05, Peter Zaitsev <[EMAIL PROTECTED]> wrote: > > > But the rule will will not be functional with fake IP address - it > > > typically does not make sense as there are no from/to ips in the > > > network - fake is not really used anywhere. So why to keep them with > > > fake IP wasting resources instead of simply removing if they are not > > > needed. > > > >Sure it will, if you don't select LAN subnet for the source. > > In fact, you don't even need a fake address. > > > > > > --------------------------------------------------------------------- > To unsubscribe, e-mail: [EMAIL PROTECTED] > For additional commands, e-mail: [EMAIL PROTECTED] > > --------------------------------------------------------------------- To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]