On Fri, Aug 06, 2004 at 01:45:01AM -0300, Damian Gatabria wrote: > > Did you add a rule in your INPUT chain to allow this traffic? > > Yes, i did try adding one, but it seems to make no difference. > tcpdump reports no packets as being dropped by the kernel. They > just seem to go nowhere. Adding a LOG rule just before the PREROUTING > one shows the SYN is being received, also. > > BTW, this machine is running kernel 2.6.7, and i'm also using a > second "testing" machine, running 2.6.5. > > Does anyone know if this kind of setup is supposed to be supported > at all? Yes, it's supported, but this is the wrong mailing list for the discussion. Ask for assistance on the netfiler mailing list. Phil - : send the line "unsubscribe linux-net" in the body of a message to majordomo@vger.kernel.org More majordomo info at http://vger.kernel.org/majordomo-info.html