 From:  Dinesh Nair <dinesh at alphaque dot com>
 To:  MonoWall-Developers List <m0n0wall dash dev at lists dot m0n0 dot ch>
 Subject:  Blocking incoming packets with IP Options
 Date:  Sun, 15 Oct 2006 23:34:13 +0800
in filter.inc, the initial ruleset for ipf contains the following line:

block in $log quick all with ipopts

this line currently blocks IGMP multicast packets, so i've succesfully
removed it from filter.inc.

hower, my reason for this email is to check why incoming packets with IP
options are blocked by default, and what implications have i opened up by
removing this rule ? or rather, what was the reasoning behind adding this 
rule in ?

