I cheked it with "log" rule before and there is accepted hits.
Oct 25 12:24:30 tco tco PFE_FW_SYSLOG_IP: FW: vlan.20 A udp 172.17.20.28 93.158.134.3 40423 33434 (1 packets) Oct 25 12:24:30 tco tco PFE_FW_SYSLOG_IP: FW: vlan.20 A udp 172.17.20.28 93.158.134.3 36985 33435 (1 packets)
Abed AL-R wrote:I have another question for you:
Is all the [217.12.253.225 213.167.56.133 213.167.60.117] resides under the same zone which is "untrust" ?
They should be, as it ISP's IP adresses
Is it possible that problem is address 213.167.60.118 and 213.167.59.134 are configured on the same interface?