This update is only of interest to those of you using Dynamic Zones. Previously, the source interface was not included in the ''nat'' table rule generated from DNAT rules when the rule was applied. The bug usually didn''t have any observable effect other than to slow down all connection requests in the case where Dynamic zones are used with DNAT rules. -Tom -- Tom Eastep \ Nothing is foolproof to a sufficiently talented fool Shoreline, \ http://shorewall.net Washington USA \ teastep@shorewall.net