Witam Monday, June 28, 2004, 6:31:40 PM, you wrote: AS> I believe unMARKed packets are the same as packets with MARK = 0 And you are right :) Thanks. AS> Rules without targets will still happily count packets for you. Once again, thanks. :) I have one more question. Maybe someone can help. What about tracking connections on non standard ftp ports (or http), for example 2121? How can i recognize them as a ftp (or http) connections and proper mark them? I read about layer7-filter project, but is it necessery? -- Pozdrawiam Marcin mailto:slacklist@xxxxx