Hi All, Let me try again, this time with fixed width ! First off the scenario. We have a local and remote site, both of which connect to the internet via a wireless network. The wireless cards themselves have both an ethernet (ixp1) and an "Atheros" (ath0) interface. The devices connect via PPPoE, and so there is also a ppp0 interface on each device. On one side we have : IXP1 IP address : 192.168.200.202 PPP0 IP address : 192.168.94.134 ATH0 IP address : Unassigned And on the other side : IXP1 : 192.168.2.200 PPP0 : 192.168.94.132 ATH0 : Unassigned I have tried various combinations of local and remote addresses, and have tried both IPSec and GRE tunnels, all to no avail. There is a masquerading firewall on the PPP interfaces, but turning this off does not have any effect. I have tried excluding the 192.168.2.200 address from being masqueraded, also to no avail. I can quite happily ssh to either of the two PPP interfaces, but cannot access anything behind the PPP interfaces.I am going to try assigning an intermediate address such as 192.168.200.11 to the tunnel interface, but I have the feeling that the tunnels are not even being created. I do do the tunneling from both sides, so I don''t think that is the problem, unless there are very short timeouts associated with their creation ?? Does anyone know if there is any information hidden away in the /proc interface which will tell me whether the tunnels have failed? Can anyone explain how the various IP addresses would be encapsulated in an IPSec over PPP interface. Maybe then I could figure out my routing etc. Best regards Steve Comfort