I hope there is someone out there that can help me with this problem. We manage a number of CP-FW1 on AIX. On one of these we notice the following in the logs: 9:35:26 drop xxx.xxx.xxx >en0 proto tcp src 127.0.0.1 dst 192.168.13.25 service 1548 s_port http rule 0 reason: local interface address spoofing I changed the dst IP for obvious reasons Can anyone help me how to fix this? I double checked and all the firewalls are set up in the same way under the policy settings. No spoofing rules are enabled on any of the interfaces defined. Yet, we have this on only one of the firewalls. Any pointers will be much appreciated! JdW