I''m getting strange packets on my firewall from time to time. Below is the log line. ACK and FIN are set and it is accepted but what''s strange is the Source Port. I have an explicit that lets all mldonkey traffic out (via owner match). I suspect this is the donkey as it''s a donkey port. My local port range begins with 32768. And this should at least match the RELATED/ESTABLISHED, shouldn''t it? Any ideas? Shorewall:fw2net:ACCEPT:IN= OUT=ppp0 SRC=xxx DST=xxx LEN=40 TOS=0x00 PREC=0x00 TTL=64 ID=25316 DF PROTO=TCP SPT=4882 DPT=4816 WINDOW=7803 RES=0x00 ACK FIN URGP=0 -- COMPUTERBILD 15/03: Premium-e-mail-Dienste im Test -------------------------------------------------- 1. GMX TopMail - Platz 1 und Testsieger! 2. GMX ProMail - Platz 2 und Preis-Qualit?tssieger! 3. Arcor - 4. web.de - 5. T-Online - 6. freenet.de - 7. daybyday - 8. e-Post