> > Sounds like a SNAT rule that isn't tied down to just the external > interface. Including packet traces and sniffs is potentially useful, > but more useful would be any SNAT and DNAT rules themselves. > I've already posted my PREROUTING chain to the list. And in the same message you replied to was several packet captures further down the message. There is no SNATing anywhere--on any interface. I would be thankful for any help or info on more places to look to troubleshoot. - Craig