Hi I have internal network (192.168.*.*) and a public address(2) . My RH9.0 BOOX HAS TWO NIC's eth0 and eth1. I am running bastille. I would like to monitor ports and bandwidth usage. Does bastille create iptable chains using the bastille-firewall.cfg file? Can I mdofiy the iptables chains ie add new rules outside of bastille or do I have to use bastille? I have tried to block ports 1024 above and added the following lines in bastille-firewall.cfg file TCP_BLOCKED_SERVICES="1024:" UDP_BLOCKED_SERVICES="1024:" Does this create the neccessary rule in iptables? Regards Gavin Mellors -- Shrike-list mailing list Shrike-list@xxxxxxxxxx https://www.redhat.com/mailman/listinfo/shrike-list