On Mon, 3 Dec 2001 15:22:25 -0500 Whit Blauvelt <whit@xxxxxxxxxxxxx> wrote: > Thanks Christoph (and Julian!), by happy coincidence this is exactly what > I'm looking for today. > > In nano.txt you say the firewall, for iptables, must be stateful. Of course, > ipchains doesn't do stateful. I'm looking at using Julian's patches with a > 2.2.20 kernel and ipchains and masquerading. Does anyone know offhand > whether I should: > > 1. Expect this to work? > > 2. Expect this to get weird? > > If 2: > > - What weirdness should I look out for? > > - What, in theory, is the statefulness accomplishing in this context? Honestly, I have no idea. Maybe Julian can help you out. I've tested this only on 2.4 with iptables. The setup isn't a three mouseclick action, but it's also not that bad, that you couldn't just try. -- Christoph Simon ciccio@xxxxxxxxxxxxxxx --- ^X^C q quit :q ^C end x exit ZZ ^D ? help .