Hi, On Mon, 28 Apr 2003, John Berntsen wrote: > Everything worked fine, except for the pptp vpn against that one server. > > Clients trying this are nt4 boxes, and traffic works like this as far > as i can understand: client - linux-gateway - cisco router - pptp > server and back like: pptp server - nated ip on cisco - client That is the problem I think: the linux gateway does not see the reply packets, which is needed for conntrack/NAT to work properly. [Please wrap your lines.] Best regards, Jozsef - E-mail : kadlec@xxxxxxxxxxxxxxxxx, kadlec@xxxxxxxxxxxxxxx PGP key : http://www.kfki.hu/~kadlec/pgp_public_key.txt Address : KFKI Research Institute for Particle and Nuclear Physics H-1525 Budapest 114, POB. 49, Hungary