On Wed, Sep 22, 2010 at 5:14 PM, Chris Flugstad <ch...@cascadelink.com> wrote: > wan rules > proto source port dest > port gw > block * 216.127.61.72 * * > * * > > lan rules > block * * * 216.127.61.72
Although you weren't explicit, I got the impression that the host you are trying to block is local to you. If so, then you need to reverse your interfaces OR reverse the source/dest IP addresses. If on the other hand 216.127.61.72 is an internet host that you're trying to detach from your network, then your rules look good. db