Dear Reader, I would like to ask when will it possible writing such rules as mentioned in $SUBJECT. For example: ipset new foo hash:ip ipset add foo 192.168.1.1 -t filter -A FORWARD -j LOG ... -t nat -A POSTROUTING -j SNAT ... -t mangle -A PREROUTING -j MARK ... Sorry for my bad English. Regards, Csordás Csaba Ifj. -- To unsubscribe from this list: send the line "unsubscribe netfilter" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html