Ralf Dreibrodt écrivait : > Is there any packet filter, which can block only outgoing ssh-sessions? One may use the "string" extension to iptables to match "SSH"? See there: http://www.netfilter.org/documentation/pomlist/pom-extra.html#string Regards, J.C.