> Radel wrote: > > I'm logging all incoming connections to port 137:139, and dropping > packets, but I can see the netbios request on tcpdump listening on > ippp0 interface (isdn link). > So tcpdump can see packets that will be dropped by iptables? Yes. (very good for debugging...) Cheers, Juri