Drops on accept rule

Question asked by Jon Dyke on Aug 22, 2018
Latest reply on Dec 10, 2018

Hi All


I am currently having a very odd issue that I cannot get to the bottom of on pair of R80.10 gateways.  I am seeing 'weird drops' on rules which are actually accept rules.


Here is one example:-

I open a browser on and go to 


The site opens ok but :-

fw ctl zdebug drop | grep




;[cpu_0];[fw4_1];fw_log_drop_ex: Packet proto=6 -> dropped by fw_send_log_drop Reason: Rulebase drop - on layer "Site0-Simplified-Policy Secur" rule 3;


Rule 3 is an accept rule!!!!


Any help appreciated.