> 3. Don't think there's a limewire conntrack module, so if you want to do the > honourable, write it yourself. :-) You might be able to use a L7 filter > (l7filter.sourceforge.net). But like said at point 1. It's probably overdone, > as you can block 99.99% with iptables alone. There is an ipp2p module that can match Gnutella traffic and Limewire seems to be similar. Maybe you can use it. I think http://www.ipp2p.org/ has the latest downloads/docs. Gr, Rob