diff --git a/etc/inc/filter.inc b/etc/inc/filter.inc
index 692d8e3414..08b2e92c95 100644
--- a/etc/inc/filter.inc
+++ b/etc/inc/filter.inc
@@ -1361,16 +1361,7 @@ function filter_generate_user_rule($rule)
$type = "pass ";
}
if ($type == "reject") {
- /* special reject packet */
- if ($rule['protocol'] == "tcp") {
- $aline['type'] = "block return-rst ";
- } else if ($rule['protocol'] == "udp") {
- $aline['type'] = "block return-icmp ";
- } else if ($rule['protocol'] == "tcp/udp") {
- $aline['type'] = "block return ";
- } else {
- $aline['type'] = "block ";
- }
+ $aline['type'] = "block return ";
} else
$aline['type'] = $type . " ";
if (isset($rule['floating']) && $rule['floating'] == "yes") {
@@ -2406,4 +2397,4 @@ EOD;
return($ipfrules);
}
-?>
+?>
\ No newline at end of file
diff --git a/usr/local/www/firewall_rules.php b/usr/local/www/firewall_rules.php
index 380a003f7e..2d67fd5358 100755
--- a/usr/local/www/firewall_rules.php
+++ b/usr/local/www/firewall_rules.php
@@ -369,10 +369,7 @@ echo "
Choose what to do with packets that match the criteria specified below.
- Hint: the difference between block and reject is that with reject, a packet (TCP RST or ICMP port unreachable for UDP) is returned to the sender, whereas with block the packet is dropped silently. In either case, the original packet is discarded. Reject only works when the protocol is set to either TCP or UDP (but not "TCP/UDP") below.
+ Hint: the difference between block and reject is that with reject, a packet (TCP RST or ICMP port unreachable for UDP) is returned to the sender, whereas with block the packet is dropped silently. In either case, the original packet is discarded.