On Sunday 29 February 2004 16:02, Sasa Stupar wrote: > What I want is to accept connections only from those listed in the > rules and drop others. But with the current config it accepts > connectins also from others which are not in the rules. Connections to what? Your rules, such as the one below, allow connections from anywhere. > # FTP > -A INPUT -p tcp -m tcp --dport 21 -j ACCEPT David