I have root logins disabled in sshd_config (PermitRootLogin no) on a gateway, but it would make life easier if I could make it interface dependent - is there a way of doing this? In effect I would like to permit root login on internal networks, but not on the internet facing one. BillK -- William Kenworthy <billk at iinet.net.au> Home!