Is that user using a proxy cache or the like? >>>> I trying this: ipchains -A output -s 192.168.2.0/24 0:65535 -d 205.244.199.3/32 21 -p tcp -l -j DENY But local user still can connect to this ftp.. What is wrong in this rule ? Sorry for newbie question, and for pure english Emilis