On Wed, Dec 17, 2003 at 09:49:37AM +0100, Cedric Blancher wrote: > > Justa quick one - I use $DMZPORTS to define the ports I wish to be allowed > > inbound on the forward chain - can I use > > ! -m multiport --dports $DMZPORTS > > to mean "any port that isn't specified by $DMZPORTS"? > Match is called "mport", not "multiport". So you call it using : FWIW, multiport is the stock match. mport is an enhancement to multiport and is currently supplied in patch-o-matic base.