I have a gateway with the firewall function, it has 4 interfaces OUTSIDE NETWORK || eth0 167.205.30.75 _____________________||________________________ eth1 eth2 eth3 167.205.102.0/26 167.205.102.64/27 167.205.102.128/27 the gateway just running SMTP and ssh, i want to log and prevent (as I can) the port scan from the outside. I was able to slow down the nmap from about 50 seconds to about 250 seconds from other host (from the outside network) to my internal box (167.205.102.2) Does somebody can tell me how to increase this (slow down the nmap), some suggest will be good too... Sorry for my english.... Regards, D. Prima Prayudi IPv6-enabled ARC-ITB 2001:d30:3:160::2/64