Mike,
Actually, I noticed that the RAW filter in iptables wasn't working. This
is where I place the ipencap input command so I don't get duplicate
netflow for the packets on the WAN (encapsulated) and AMPRLAN
(de-encapsulated) side.
I had to fix it by adding the package kmod-ipt-raw.
It should be online and accessible from AMPRNet now.
- Lynwood
KB3VWG
PS: I do have DDoS rules for DNS and HTTP, but they don't appear to have
alarmed.