On 12/9/05, James Kosin <jkosin@xxxxxxxxxxxxxxxxxx> wrote: > Iptables should be kept simple and to the point. > > (1) At the bottom (last line) DISALLOW everything. > (2) Insert above rule #1 anything you want to allow. LOL! Yeah, but that's not the way the world functions. =) I have already seen a similar set-up using a Cisco router and Apache but I think I can do it all with just Perl-MySQL and iptables. I have been looking at some sf.net hosted projects which might be converted... -- WC -Sx- Jones | http://ccsh.us/ | Open Source Consulting