> What I'd like to see is a real virtual machine designed for > packet filtering (similar to BPF), and we compile the rules > into VM instructions, You've been using that Israeli firewall product again, what was it called again, Crackpoint ? :-) Greg