On Sat, Sep 22, 2018 at 12:55:24PM +0200, Pascal Hambourg wrote: > I do not see how all this replies to my question : > > Why should only TCP inbound responses be allowed ? What about UDP-based > protocols, ping replies (ICMP echo reply), ICMP error messages, and so on ?
Given that my entire point was that no firewall policy other than "configure it yourself" will work, it's really you missing the point to expect me to describe a complete firewall policy tuned to your desires. -dsr-

