On Thu, 29 Jul 2004 13:31:28 -0400, velociraptor <velociraptor at gmail.com> wrote: > I would assume you can do blocks on "from" as well. We don't specify oops, I meant ^^^^^^^^ netblock notation :-) > interfaces except in the default rule to block everything. In the > "allow" rules, we use IP's. We, too are using IPMP.