Sorry .. one error ... > I won't bore you with more detail, but I've been through proc and > made the changes seen below .. and I've added an iptables > rule (in my default allow ruleset) to allow icmp-redirect packets > outbound, and it increment the count against the rule. and it *didn't* increment the count against the rule. .. and indication that iptables is either not the cause of the problem, or is the cause and not reporting it ... -- Ian Latter Internet and Networking Security Officer Macquarie University - : send the line "unsubscribe linux-net" in the body of a message to majordomo@vger.kernel.org More majordomo info at http://vger.kernel.org/majordomo-info.html