I work at a large company and was having some fellow employees regularly scanning my box... so I put up a little firewall. Here's my one and only rule: iptables -A INPUT --source 192.168.0.0/16 -j DROP Now, shouldn't that block any and ALL traffic from any computer on the 192.168.*.* subnet? Do I need to be more explicit? I also have snort running and I see some stuff getting through... Thanks. RMC __________________________________________________ Do you Yahoo!? Yahoo! Mail Plus - Powerful. Affordable. Sign up now. http://mailplus.yahoo.com