On 30/04/2012 19:59, carlopmart wrote: > > .. but it seems too old, or not? My linux servers are CentOS 6 ... system-config-firewall Essentially, set your default policies to DROP (once you configure via system-config-firewall) Then edit /etc/sysconfig/iptables to just allow additional protocols you require that might not be done by the system-config-firewall interface. -- Best Regards, Giles Coochey, CCNA Security, CCNA NetSecSpec Ltd giles.coochey@netsecspec.co.uk Tel: +44 (0) 7983 877 438 Live Messenger: giles@coochey.net http://www.netsecspec.co.uk http://www.coochey.net