I've been toying around with the idea of redirecting unwanted traffic to the discard surface. I'm having trouble understanding some concepts though. Could anyone please explain this in more detail or perhaps suggest a way to accomplish this. On the filter tables using IMPUT there is no way to change or alter the destination of packets and cause them to be sent to another port? Using the POSTROUTING chain in the nat table is impoosible to effectively filter traffic via specific matches due to the fact that POSTROUTED packets are sort of "lumped together" for lack of a better way to explain it? If anyone can answer these I would MOST appreciate it as it is really causing me alot of confusion. Thanks s-blaze ===== "Winky is not knowing how sir, winky is not knowing how?" -=Winky / Harry Potter and the Goblet of Fire=-" __________________________________ Do you Yahoo!? Yahoo! SiteBuilder - Free, easy-to-use web site design software http://sitebuilder.yahoo.com