On Fri, Jan 9, 2009 at 13:35, Pablo Neira Ayuso wrote: > Polling iptables does not look to me a good option. The way to go should be > ulogd2 or or the conntrackd in its simple statistics mode. Normally yes. But in this case, I need to use what's there and I know that iptables is there :) Richard -- To unsubscribe from this list: send the line "unsubscribe netfilter" in the body of a message to majordomo@vger.kernel.org More majordomo info at http://vger.kernel.org/majordomo-info.html