Hi,i just think about that does netfilter could doing a Application Layer protection. Assume there is a website which the server is Apache/Tomcat,and the browser just submit the http/jsp form which contains a malicious string for SQL or XSS attack.Now the netfilter program in the website server get the string before send to Tomcat and check the string. So does this could be done?And how to do it by netfilter? -- To unsubscribe from this list: send the line "unsubscribe netfilter" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html