I've seen a few references here to scripts that monitor attacks and dynamically update iptables rules to knock down the attacks. Can anyone provide some good research starting points or sample scripts that they use? I've found a few things with google but respect the collective out here much more. Thank you, Tim Heagarty, CISSP, CISA, MCSE http://www.TheaSecure.com/ (928) 533-9690 "There are 10 kinds of people in the world; those that understand binary, and those that don't." -- No virus found in this outgoing message. Checked by AVG Free Edition. Version: 7.5.432 / Virus Database: 268.16.5/616 - Release Date: 1/4/2007 1:34 PM