p 103 of "Linux Firewalls" 2nd Ed by Robert Ziegler
discusses the 'owner match extension' that matches the packet's creator.

A match can occur on uid, gid, pid, or sid.  The extension can be used on the OUTPUT chain only.

Dan Martin, MD
GP Hospital Practitioner
Computer Scientist
(204) 831-1746
answering machine always on