Hello Tom, Thank you VERY VERY MUCH for realization IFB configuration in Shorewall. Despite of limit using only external IPs for filtering, it is COOL! I am using this feature and very satisfied. On OpenSUSE and Gentoo i use it and it WORKS fine. But on CentOS 5.1 i discover problems with shaping at all. Configurations applied fine without any errors and i have all tc-filters and rules but nothing go through them - all counters are zero (as outgoing such and incoming). I found that 'show filters' and 'show classifiers' have identical output (at least in 4.1.6). With best wishes, Alex P.S.: if somebody want to find a good tool for traffic accounting task i with pleasure can advise such excellent package as 'pmacct' (http://www.pmacct.net). It's like Shorewall - compact, flexible and powerful. ------- Белросбанк. Новые условия по кредитованию на новые и подержанные автомобили. От 12% годовых, на срок до 7 лет. Возможность получить кредит без справки о доходах, без поручителя, в любом регионе Беларуси. Тел. (017) 21-000-22, www.belrosbank.by ------------------------------------------------------------------------- This SF.net email is sponsored by the 2008 JavaOne(SM) Conference Don't miss this year's exciting event. There's still time to save $100. Use priority code J8TL2D2. http://ad.doubleclick.net/clk;198757673;13503038;p?http://java.sun.com/javaone _______________________________________________ Shorewall-users mailing list Shorewall-users@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/shorewall-users