I have an issue.
I would like to block internet access for a PC by MAC-Address and only allow the SMTP ports (993.465) for sending and recieveing emails.
You’re slipping, master anav. You also forgot to mention that this is very nice example where a jump can be used to make things more clear and efficient.
Instead of repeated checks for MAC address, where packets from other devices have to be checked against all three rules:
When a packet arrives at the jump rule and its not associated with that particular MAC address it skips the container with jumped mac rules, and goes straight to the next filter rule.
Kewlios!!!