On Mon, Apr 03, 2006 at 11:56:02PM +0300, Rimantas Petrauskas wrote: > I mean for all TCP sessions. All IP connects to internet through gateway > and i want that gateway to limit sessions for specified IP addresses. Check pf.conf(5), STATEFUL TRACKING OPTIONS, max, max-src-states and max-src-conn. Joerg