====== iptables Linux Firewall ====== ===== rules ===== ==== application level firewalling ==== If your kernel was compiled with ''CONFIG_IP_NF_MATCH_OWNER'' then you can configure your iptables firewall to allow or reject packets on a per-command basis. iptables -A OUTPUT -m owner --cmd-owner acroread -j DROP The ''owner'' module only allows matches on the ''OUTPUT'' chain!