When we set the firewall to be non-active, we still examine every packet, but not looking in the rule table, right ? This way we can still add useful information to the log, like {packet data, NF_ACCEPT, REASON_FW_INACTIVE}