ѽ҉ᶬḳ℠ <vtol@xxxxxxx> wrote: > That is one protocol (icmpv6 neigh resolution) being untracked but that > implies that NFT is then subsequently blocking the source ipv6 entirely? Its the same effect as dropping ipv4 arp packets with arptables, stack won't be able to figure out which ethernet address to use to send the packet to.