On Wed, 23 Jun 2004, [iso-8859-1] Pär Häggblad wrote: > I have used iptables 1.2.9 with kernel 2.4.x since a week ago. > Now I'm using the new 2.6.7 kernel and iptables 1.2.10. You did compile iptables 1.2.10 using the 2.6.7 source code, didn't you? > modprobe ip_nat_ftp ports= ab,cde,fgh ^ That space is illegal there | > 2. $IPTABLES -v -A INPUT -i eth0 -p icmp -j DROP > Does not work. I can still ping my compu, the packets are not dropped. If you list out the rules, you can see the same ones you fed into the kernel? Best regards, Jozsef - E-mail : kadlec@xxxxxxxxxxxxxxxxx, kadlec@xxxxxxxxxxxxxxx PGP key : http://www.kfki.hu/~kadlec/pgp_public_key.txt Address : KFKI Research Institute for Particle and Nuclear Physics H-1525 Budapest 114, POB. 49, Hungary