Joshua Schmidlkofer wrote: > > > Now that I am over my fan-boy moment, what is the recommended practice? > I have upgraded to ipsec-tools 0.5 -- as Patrick points out, the fwd rule gets added automagically. -Tom -- Tom Eastep \ Nothing is foolproof to a sufficiently talented fool Shoreline, \ http://shorewall.net Washington USA \ teastep@xxxxxxxxxxxxx PGP Public Key \ https://lists.shorewall.net/teastep.pgp.key - : send the line "unsubscribe linux-net" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html