Hi All, Is there any way to specify a list of ports in a snort rule (as opposed to a range). eg. I want to extend the many of the POP rules to cover POP and IMAP. Russell Fulton, Computer and Network Security Officer The University of Auckland, New Zealand