On May 7, 2010 11:51:27 am Pascal Hambourg wrote: > > Do you mean this : "this can be used to block traffic" ? > It can be used to block traffic, but does not block traffic by itself. > Subsequent packets of a deleted TCP connection will just be in the > INVALID state, it is up to the iptables ruleset to drop such packets if > this is what you want. > > What should I do if I want to break current connection? Using 'cutter'? > > What do you want to achieve exactly ? Drop/reject subsequent packets ? > Then see above, you need iptables. Or actively close the connection ? > Then you need a tool such as cutter. > Thank you very much - I think that is the answer I am looking for. -- To unsubscribe from this list: send the line "unsubscribe netfilter" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html