Hi there Rh9 has installed all the default filter policies as "accept" and then forwards all packets from INPUT and FORWARD to a Lokkit chain. Is this normal? It seems to me [as a iptables n00b, although I am checkpoint certified] to be ok, as eventually the traffic is hitting the detailed lokkit chain, but is this the default install options that everyone gets? Cheers Steve ----------------------------------------------------------------------- Information in this email may be privileged, confidential and is intended exclusively for the addressee. The views expressed may not be official policy, but the personal views of the originator. If you have received it in error, please notify the sender by return e-mail and delete it from your system. You should not reproduce, distribute, store, retransmit, use or disclose its contents to anyone. Please note we reserve the right to monitor all e-mail communication through our internal and external networks. -----------------------------------------------------------------------