Thanks Christoph (and Julian!), by happy coincidence this is exactly what I'm looking for today. In nano.txt you say the firewall, for iptables, must be stateful. Of course, ipchains doesn't do stateful. I'm looking at using Julian's patches with a 2.2.20 kernel and ipchains and masquerading. Does anyone know offhand whether I should: 1. Expect this to work? 2. Expect this to get weird? If 2: - What weirdness should I look out for? - What, in theory, is the statefulness accomplishing in this context? Whit On Sun, Dec 02, 2001 at 05:41:54PM -0200, Christoph Simon wrote: > I've been looking for about a year to find a way to use more than one > independent link to the Internet from a single computer. But I only > found many others who tried to do the same, without success. > > Then I found out about Julian Anastasov's patches, and well, now it's > working. Unfortunately, this is not a five minutes solution, nor will > it help in all kinds of situations. So I decided to write a document > which tells step by step how this can be done and how it works, for > which I received lots of support from Julian. Thanks. > > The text can be found at: > > http://www.linuxvirtualserver.org/~julian/nano.txt