Hi We are implementing IPS(intrusion prevention system). Hogwash prevent packets only in router/ bridge mode. Anyone implemeted HOGWASh in IDS mode(prevent spurious traffic). snort-inline also do the same. Even in iptables also we will block using string patch. Iptables will work in kernel level . What about the others. Please reply. Regards TMurugavelu