Friends, I am new to netfilter world, can someone please clarify on how many ways are there to interact with the Linux TCP/IP stack, based on google reading, I think it can be achieved in following 3 ways- 1. Userspace ¬? LIBIPQ can be used in conjugation with ?j QUEUE 2. Kernal modules- by using nf_register_hook 3. IPTABLES match ? by using register_match Are there more ways? does anybody has any comparison info in terms of performance etc ? Which one is faster? Thanks, Mayank __________________________________________________ Do You Yahoo!? Tired of spam? Yahoo! Mail has the best spam protection around http://mail.yahoo.com