On Wed, Aug 13, 2003 at 09:22:25AM +0200, Ralf Spenneberg wrote: > --dport requires the definition of a protocol beforehand. It is only > defined when the protocol is either udp or tcp. Omitting the protocol or > using all does not work because icmp, esp, ah, etc. do not have a port. Ok. Got it now. Thanks a lot Ralf for the excellent mails so far. > Book: Intrusion Detection f?r Linux Server http://www.spenneberg.com Why is this ? in "f?r Linux Server" With warm regards, -Payal -- "Visit GNU/Linux Success Stories" http://payal.staticky.com Guest-Book Section Updated.