On Mon, 4 Apr 2005, John A. Sullivan III wrote: > other device. I believe that once the traffic flow is being managed by > connection tracking, the packets never traverse the filter table. Thus, > you cannot them there. s/filter/nat/, but there is no NAT involved in the question. Best regards, Jozsef - E-mail : kadlec@xxxxxxxxxxxxxxxxx, kadlec@xxxxxxxxxxxxxxx PGP key : http://www.kfki.hu/~kadlec/pgp_public_key.txt Address : KFKI Research Institute for Particle and Nuclear Physics H-1525 Budapest 114, POB. 49, Hungary