I have compiled 2.6.12 kernel with iptables expire support, I also have recompiled iptables with expire support. And I encounter a strange problem with time xxx:/home/digis#modprobe ipt_expire xxx:/home/digis#/usr/local/sbin/iptables -t nat -A POSTROUTING -m expire --expiration +30 -o eth1 -j MASQUERADE Then I wait more than 30 seconds.... xxx:/home/digis#/usr/local/sbin/iptables -t nat -L Chain PREROUTING (policy ACCEPT) Chain POSTROUTING (policy ACCEPT) target prot opt source destination MASQUERADE all -- anywhere anywhere expires in -2s and it keeps counting... What I am doing wrong? -- Justinas Bedzinskas <justasb@xxxxxxxxxxx> "Patikimi Sprendimai"