hi, i'am from Indonesian, i use mandrake 8.2 for my gateway server, which had iptables installed on it.. so i decided to use it, and remove ipchains and ipvsadm. and i use iptables -t nat -A POSTROUTING -s 192.168.15.0/24 -o eth0 -j SNAT --to-source myinternetip when i try to browse from my workstation which at 192.168.15.0/24 it cannot find any page.. so i try ping command to yahoo.com IP, and get the reply. i'm so confused, why other port cannot pass to workstation, although the INPUT,OUTPUT, FORWARD Policy is ACCEPT.. so there isn't firewall at all. why ip tables cannot pass the port beside 80. aren't must i declared it first, how ? help me !! __________________________________________________ Do you Yahoo!? Y! Web Hosting - Let the expert host your web site http://webhosting.yahoo.com/