> The current solution where I have 19 groups does not scale to 19*256 groups. > What solutions exist for linux to make linux into a ISP like bandwidth > limiting router? I haven't tried this myself but: Have you looked into the IPMARK iptables extension (in pom/xtables-addons): http://www.netfilter.org/projects/patch-o-matic/pom-external.html#pom-external-IPMARK Their basic usage example seems to be doing more or less what you want to achieve. So its a netfilter list related question after all :-) -- To unsubscribe from this list: send the line "unsubscribe netfilter" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html