Thanks for the replies guys! I'm sorry Jascha but the suggestions you got in your thead went kind of over my head, can I ask you if and how you "do allow the front-end Squid to re-FTP the traffic to the appropriate server then intercept it independently into the backend with its own ftp_port accepting the "native FTP" coming out of the frontend"? If that's a "technically possible only" suggestion, I guess my only alternative is to let my FileZilla client connect directly to my DMZ Squid machine and do the ACL stuff there, right? -- Sent from: http://squid-web-proxy-cache.1019090.n4.nabble.com/Squid-Users-f1019091.html _______________________________________________ squid-users mailing list squid-users@xxxxxxxxxxxxxxxxxxxxx http://lists.squid-cache.org/listinfo/squid-users