Am 08.08.2014 um 14:05 schrieb Robert van Leeuwen: > It is also possible to specifically not conntrack certain connections. > e.g. > iptables -t raw -A PREROUTING -p tcp --dport 6789 -j CT --notrack Thanks Robert. This is really an interesting approach. We will test it. Regards Christian -- Dipl.-Inf. Christian Kauhaus <>< ? kc at gocept.com ? systems administration gocept gmbh & co. kg ? Forsterstra?e 29 ? 06112 Halle (Saale) ? Germany http://gocept.com ? tel +49 345 219401-11 Python, Pyramid, Plone, Zope ? consulting, development, hosting, operations