Hi, I need filtering on a per process (ie. program name) basis. Is this already possible in iptables/netfilter/xtables etc., or in an addon? Practically: Normal filtering rules based on srcaddr, dstaddr, proto, srcport, dstport etc, Allow only specified applications sending of packets, Allow only specified applications reception of packets, Optionally log anything else, Discard anything else. When I write and install a netfilter module then how would I go to get the process name from within the kernel module? -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html