Exactly. You would forget everything I told you before about a custom script that is called from rc.local. All configuration would be done in /etc/sysconfig/ipchains. I would look for an example on RedHat first though so you know the syntax... If you want to use the old way of calling your custom script from rc.local then you want to make sure both the ipchains and iptables services are turned off.