You need to patch iptables with the DSCP-target patch. Then you can use the DSCP target to set all TOS values. regards Rinse -----Oorspronkelijk bericht----- Van: Pavel V. Yanchenko [mailto:balrog@xxxxxxx] Verzonden: donderdag 19 juni 2003 19:41 Aan: netfilter@xxxxxxxxxxxxxxxxxxx Onderwerp: Question about -m tos option Hello. I need to create a rule matching packets with 0x60 value of TOS field. The standard tos option of iptables doesn't accept such value, as well as dscp, which is extension to tos - it processes only 6 bits of TOS field :( I guess value 0x60 is precedence bits... The question is: how can I match such packets? Thanks in advance. Best regards, Pavel mailto:balrog@xxxxxxx