Is it possible to match packets on TCP sequence number? I realize there is no obvious method available, but would like to discard some poorly constructed DDoS packets which all have a common sequence number. -- Jeff at Reflected Networks