I believe, at a firewall/iptables level, you should be able to limit the number of new connections from a machine per second. This would stop machines pounding the squid proxy. Maybe let us see the squid config differences as well. Tim -- Linux Counter user #273956