Hi all, I've written a small match extension that allows one to match tcp/udp dst/src ports against a variable accessible via the proc fs. It is so far working ok for me, but consider it beta (since its only ever been run on one box :]). Hopefully its in a format acceptable to the list members/dev team. Any thoughts, criticisms are welcome, attached in pom-ng layout with iptables extension. Regards N. Davidson