用layer7吧,效果挺好的。
http://l7-filter.sf.net/iptables -A FORWARD -m layer7 --l7proto xunlei -j DROP
iptables -A FORWARD -m layer7 --l7proto bittorrent -j DROP
iptables -A FORWARD -m layer7 --l7proto chikka -j DROP
iptables -A FORWARD -m layer7 --l7proto doom3 -j DROP
iptables -A FORWARD -m layer7 --l7proto edonkey -j DROP
iptables -A FORWARD -m layer7 --l7proto goboogy -j DROP
iptables -A FORWARD -m layer7 --l7proto h323 -j DROP
iptables -A FORWARD -m layer7 --l7proto kugoo -j DROP
iptables -A FORWARD -m layer7 --l7proto live365 -j DROP
iptables -A FORWARD -m layer7 --l7proto mohaa -j DROP
iptables -A FORWARD -m layer7 --l7proto poco -j DROP
iptables -A FORWARD -m layer7 --l7proto pop3 -j DROP
iptables -A FORWARD -m layer7 --l7proto yahoo -j DROP
iptables -A FORWARD -m layer7 --l7proto zmaap -j DROP
[ 本帖最后由 dreamever 于 2007-6-27 17:23 编辑 ]