Hi guys. On CentOS Stream 8 with 4.18.0-348.el8.x86_64, I cannot get openvpn-2.4.11-1.el8.x86_64 with help of 'nftables' to allow certain traffic to get in. When OpenVPN does not use 'client-to-client' it is then supposed to pass to 'nftables' & let it handle all the traffic. I'm doing something trivial - put 'tun0' iface into 'trusted' zone and add 'forward' but vpn connected clients cannot talk to each other. I also fiddle with 'direct' rules but to no avail and I hope some Centosians have that already figured out and can advise. many thanks, L.