try dropping packets both with dport 137 and also with sport 137. On Tue, 2004-08-03 at 10:37, david wrote: > Dear all, > How to block outgoing traffic over network that using port 137 udp, > because my isp tell me that my network broadcast virus using port 137 > udp, i want to make all traffic (port 137) do go outside my network, > so i plan to blocking that traffic from my gateway. > > I already try to do this rules, but not working : > #iptables -A FORWARD -p udp -s 0/0 --dport 137 -j DROP > > > > > Regards, > David Kandou