Using it now... Great so far.
Only niggle is I had to tell it which ports to block for untrusted machines where it would have been far simplier to tell it which ones to allow... thankfully it does let you put ranges in.
Loving the realtime graphs and the QOS/Firewall ablity to to Traffic blocking/Priortisation by TYPE as well as ports.
Can block quite a lot of common P2P traffic

I'm not sure if protical encryption would get around the block or not, haven't tried it yet....
Had no trouble getting the Bebox (speedtouch) into bridge mode, and even found out (via an unofficall forum) how to write a rule into the IPtables on tomato to allow me to access the Bebox webinterface @192.168.1.254 even though my network is now on 192.168.2.xxx and the WAN ip of the router is my external IP