This solved the issue for me, but I'm trying to get an idea of why it
operates this way. With firewall policies it will go down the list until
it finds a match and stops. The same with routing in the fortivoice
system, it'll look for a matching rule ...