On Monday 11 November 2002 10:56 am, yenjet.chan@eglobal.com.my wrote: > Hi all, > > How can I make my iptable to do just NAT, no connection tracking? Yes - just don't compile connection tracking support in, and don't try to use the -m state match. > No matter how hard I tried to configure netfilter to load only iptable_nat, > it will load ip_conntrack too. I suggest you recompile the kernel without building the conntrack module. > Basically, I want to make my iptable to become a NAT device without > stateful inspection. You do realise that your NAT rules will become a lot more complicated because of this, don't you ? Antony. -- Having been asked to provide a reference for this man, I can confidently state that you will be very lucky indeed if you can get him to work for you.