Allow inbound ICMP when VPN client is enabled

i added some open firewall rules but they didn't help,

I think the vpn policy script does something with inbound traffic.

I wonder whether this rule has something to do with it