Thanks for your explanation! Thomas Graf wrote: > now, cause almost all packets have the ACK bit set this rule > matches all small packets with no ip options. it could be > done better with nexthdr to match packets with ip options > set too.
Wouldn't it also be necessary to match the packets with ACK set + Data or aren't they as much important as the packets we are already matching? bye, Hannes _______________________________________________ LARTC mailing list / [EMAIL PROTECTED] http://mailman.ds9a.nl/mailman/listinfo/lartc HOWTO: http://lartc.org/
