On Monday 11 November 2002 1:46 pm, Ray Leach wrote: > Hi > > Is it better to drop or reject packets in the mangle-prerouting table or > in the filter-forward chain? Filter-forward. The mangle tables are for mangling packets. The filter tables are for filtering them. Drop and reject are filtering actions. Antony. -- Normal people think "if it ain't broke, don't fix it". Engineers think "if it ain't broke, it doesn't have enough features yet".