Hi Nux, I think the the ipset for destination cidr is not configured with 0.0.0.0/0 due this you might see this issue. Please check the ipset and iptables rules once.
iptables -L -nv ipset -L Thanks, Jayapal > On Nov 17, 2017, a t 6:55 AM, Nux! <n...@li.nux.ro> wrote: > > Hi, > > Just installed 4.10 today for a demo, but seems there are some problems with > the egress rules in isolated networks. > Is there anything wrong with this rule? ACS allows me to add it, but no > outbound traffic is allowed at all. > > 10.1.1.0/24 0.0.0.0/0 All All All > > http://img.nux.ro/gL3-Selection_002.png > > If I replace 0.0.0.0/0 with a certain IP/32, then traffic works. > > > Also, if I don't mention a destination cidr at all, outbound traffic also > works, but the docs state 0.0.0.0/0 should be honoured as valid destination > cidr. > > Any ideas? I know there was recent work done on egress recently, maybe > related to that? > > Lucian > > -- > Sent from the Delta quadrant using Borg technology! > > Nux! > www.nux.ro DISCLAIMER ========== This e-mail may contain privileged and confidential information which is the property of Accelerite, a Persistent Systems business. It is intended only for the use of the individual or entity to which it is addressed. If you are not the intended recipient, you are not authorized to read, retain, copy, print, distribute or use this message. If you have received this communication in error, please notify the sender and delete all copies of this message. Accelerite, a Persistent Systems business does not accept any liability for virus infected mails.