There is a SuSE 8.2 pc with SuSE-Firewall 2 and a 2.4.21-rc7-grsec Kernel, with the following options: CONFIG_GRKERNSEC=y CONFIG_GRKERNSEC_LOW=y CONFIG_GRKERNSEC_ACL_MAXTRIES=3 CONFIG_GRKERNSEC_ACL_TIMEOUT=30 CONFIG_GRKERNSEC_FLOODTIME=10 CONFIG_GRKERNSEC_FLOODBURST=4 CONFIG_GRKERNSEC_LINK=y CONFIG_GRKERNSEC_FIFO=y CONFIG_GRKERNSEC_RANDPID=y CONFIG_GRKERNSEC_EXECVE=y CONFIG_GRKERNSEC_RANDNET=y CONFIG_GRKERNSEC_DMESG=y CONFIG_GRKERNSEC_RANDID=y CONFIG_GRKERNSEC_CHROOT_CHDIR=y I have to mention too, that there is no need for a special security. All external ports are closed and the ip-adress is dynamic. Before I got a lot of messages like: fw kernel: SuSE-FW-DROP-DEFAULT IN=ippp0 OUT= MAC= SRC=213.23.18.107 DST=62.46.154.238 LEN=60 TOS=0x00 PREC=0x00 TTL=52 ID=38567 DF PROTO=TCP SPT=56414 DPT=4662 WINDOW=5808 RES=0x00 SYN URGP=0 OPT (020405840402080A207010A30000000001030300) But now I can't see any like this. Is this a misconfiguration or does grsec prevent me from portscans? Al