>iptables -A INPUT -s 10.5.33.22 -j DROP Make sure that traffic is not ACCEPTed before. >but when i run iptraf , there are still traffic sent from the source address >Any idea why? Iptraf bypasses netfilter and so sees _all_ packets. Jan Engelhardt -- | Alphagate Systems, http://alphagate.hopto.org/