http://shorewall.net/pub/shorewall/Beta ftp://shorewall.net/pub/shorewall/Beta This version contains two new builtin actions in the /etc/shorewall/rules file: ACCEPT+ - Like ACCEPT but it also exempts the connection from subsequent DNAT[-] and REDIRECT[-] rules. NONAT - Exempts the connection from subsequent DNAT[-] and REDIRECT[-] rules. These actions solve similar problems reported by Robin M and by Rodrigo Cano. -Tom -- Tom Eastep \ Nothing is foolproof to a sufficiently talented fool Shoreline, \ http://shorewall.net Washington USA \ teastep@shorewall.net