Hi List, scenario: one dedicated host with n apache (http/https) behind a firewall host. As it seem (following lot''s of discussion on other boards and google) I need for each apache one public IP. Following the Shorewall howto''s the auther prefers to use proxy ARP when having webserver behind the firewall. Now I face the situation that my apache''s ARP is a kind of private "FE:FF..." so I''m not sure how to handle this.... Second issue I would like to solve is flexibility... as I start / stop my apaches quite regular I use dynamic DNS with DHCP. How can I configure shorewall that if a request reaches my firewall asking for www1.domain.de DNS looks for the correct (public IP) and routes the request accordingly... (sorry for the strange way of asking but I''m quite new to all this routing /NATing... stuff) cheers, Mat