On 8/10/07, DTakemori at thdfsg dot com <DTakemori at thdfsg dot com> wrote:
> Rule 0:21 is
> block in log quick on sis2 any to any
> and appears to take precidence over any rules I put on the sis2 interface.
> So the question is, how can I put in a rule to block these packets but not
> log doing so AND have that rule be processed before the 0:21rule?
Turn off logging for the default rule (log settings tab), and add a
block rule that logs on all your interfaces at the bottom of your rule