On 2010/04/02 20:32, Toni Mueller wrote: > I'm trying to prevent the two flows > > flow esp in from 0.0.0.0/0 to 0.0.0.0/0 peer 87.186.99.179 srcid gatewayip/32 > dstid uf...@example.com type use > flow esp out from 0.0.0.0/0 to 0.0.0.0/0 peer 87.186.99.179 srcid > gatewayip/32 dstid uf...@example.com type require > > from getting established.
I think isakmpd.policy can help you there..