> On thing: I'll surely have to continue running dhcrelay on the firewall, > but I know nothing about possible security holes with dhcrelay. As far as I understand (I am talking under correction), the only implication this would have is that your broadcasted data (not only DHCP requests), will be broadcasted to both segments. In some revere cases, this may cause some confusion with some applications and routing from a client side. I am not to sure however. --- Regards, Chris Knipe Cell: (083) 430-8151 - : send the line "unsubscribe linux-net" in the body of a message to majordomo@vger.kernel.org