ARP and broadcasts don't route so how it gets through your firewall is beyond me. Unless your machine is a bridge or something it shouldn't pass to other network cards. -----Original Message----- From: Bobby Guerra [mailto:bguerra@xxxxxxxxxxxxxxxx] Sent: Saturday, May 31, 2003 1:31 AM To: netfilter@xxxxxxxxxxxxxxxxxxx Subject: Filter ARP and Broadcasts I have noticed my production subnets broadcasts and ARP request are leaking into my DMZ. My goal is to keep the DMZ clean of all but necessary communication. Is their a way to filter ARP and broadcasts? If so could you please give syntax. Thanks for any help you may give. Bobby Guerra