----- Original Message ----- From: "Antony Stone" <Antony@xxxxxxxxxxxxxxxxxxxx> To: <netfilter@xxxxxxxxxxxxxxxxxxx> Sent: Sunday, January 11, 2004 1:25 AM Subject: Re: source-mac filtering On Sunday 11 January 2004 12:13 am, Pawel Staszewski wrote: > Hello > > Maybe try to block broadcast to the "blocked" client.... > "-m pkttype --pkttype broadcast ........." > > I use it and this work fine... You can use a rule with this match in it to stop your DHCP server giving out addresses? I thought DHCPD caught the packets before they ever got to netfilter, therefore you couldn't block the traffic with any sort of rule. Antony. -- Ramdisk is not an installation procedure. Please reply to the list; please don't CC me. Hmm... iptables -t raw ?? Maybe this helps... Paol