That is correct as of the recent version that doesn't install
anti-spoof, anti-lockout rules, etc for the lan subnet.

Scott


On 10/28/05, Dan Swartzendruber <[EMAIL PROTECTED]> wrote:
> At 03:17 PM 10/28/2005, you wrote:
> >On 10/28/05, Peter Zaitsev <[EMAIL PROTECTED]> wrote:
> > > But the rule will will not be functional with fake IP address - it
> > > typically does not make sense as there are no from/to  ips in the
> > > network - fake is not really used anywhere.  So why to keep them with
> > > fake IP  wasting resources instead of simply removing if they are not
> > > needed.
> >
> >Sure it will, if you don't select LAN subnet for the source.
>
> In fact, you don't even need a fake address.
>
>
>
>
>
> ---------------------------------------------------------------------
> To unsubscribe, e-mail: [EMAIL PROTECTED]
> For additional commands, e-mail: [EMAIL PROTECTED]
>
>

---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to