I did it like you told, but it still does not work. My logfile say: Source-IP-Adress 129.187.179.176 Source-Port 138 Dest.IP-Adress 129.187.179.255 Dest. Port 138 Protokoll UDP. I've defined a rule which drops netbios: Any {netbios} Any Drop. In netbios-groupe is included netbios-dgm tcp/udp 138 138. So why isn't it droped?
If that dest IP is one of the interfaces in your firewall, or a broadcast address (looks like yours is) you may have to make another rule to drop that traffic specifically.
If that dest IP is one of the interfaces in your firewall, or a broadcast address (looks like yours is) you may have to make another rule to drop that traffic specifically.