Hello, I have recent installed squid on my firewall box to act as a proxy server for HTTP, HTTPS, and considering FTP. I have added in iptable rules for squid redirecting 80 to 3128 and 443 to 3128 but I have a question. My default --policy is DROP ... so in order for squid to work I need to allow outbound 80 traffic and not forwarded 80 traffic like before .. but if I want squid to also allow ftp should I not just allow the process ID of squid to make outbound connections ? Thanks. -- Michael Gale Network Administrator Utilitran Corporation