I apologize if I offended you, my intention was not to offend anyone, sorry(I was just kidding, I already know of the great advantages on Layer 3 squid offers, but is not the solution that I'm looking for). What u say is what I'm actually doing, using acl in order to put a DSCP mark on each packet leaving the maching according to the IP src, is something like this acl higgs src 192.168.1.2 tcp_outgoing_dscp 0x01 higgs But tc seems to have no support on dscp or I haven't found it yet; so I must "remark" the packet with a fwmark that tc can handle. Thats where the problem becomes a netfilter problem, but if you thinks it deeply is a routering problem since the packets are being routered(anyway the problem concercs with iptables or something so). -- It will be advantageous to cross the great stream ... the Dragon is on the wing in the Sky ... the Great Man rouses himself to his Work. _______________________________________________ LARTC mailing list / LARTC@mailman.ds9a.nl http://mailman.ds9a.nl/mailman/listinfo/lartc HOWTO: http://lartc.org/