Hi, I would like to mark any edonkey packets for traffic shaping. i tried to identify those packets by sourceport/destport, but many clients use different ports (i.e. 80). i read that the first data byte identifies the edonkey packet, but how can i filter it out? any suggestions? many thanks, martin