I have an SSH server running on 192.168.0.250 behind my firewall. It runs on 22 (yes, I''ve checked the sshd_config!) but I want to connect to it from the net by forwarding port 10022 to it. I have the following rule in my rules: DNAT net loc:192.168.0.250:22 tcp 10022 it works. But originally I tried: DNAT net loc:192.168.0.250 tcp 10022 22 which did not work. I''m just curios why. (I''m trying to get a grip on how these rules work.) TIA for any insight. =C* Cal Evans * Stay plugged into your audience. * http://www.christianperformer.com