Hi guys, I've installed isa server 2004 on windows 2003 server. I make rules from scratch. I hv two rules in firewall policy: 1. ping request from internal network 2. deny everything traffic (last default rule) for rules #1, I set it to allowed to ping to localhost. And it's work, internal network can ping to localhost (isa). Then I change the permission to deny. Then applying it. But after apply completed, internal network still can do ping and got response from localhost. They should be not able to ping to localhost. Then I trying to restart the firewall service, after that, internal network can not ping the localhost. Why the rules not working after I click apply after change the rules permission ? Can anyone help me about this problem ? thanks. hery