Firewall rules do not affect existing connections. They do prevent new connections.

Established TCP connections will not be broken by the rule, and so it will seem like the rule is not working.

However, UDP and ICMP are connectionless forms of communication. If the software uses UDP, the firewall rule will seem to take effect immediately.

There is a possible work-around that allows breaking existing TCP connections discussed here: »DI-604 alternative

by funchords See Profile
last modified: 2006-01-06 17:04:16