On Tuesday 06 May 2003 14:45, Voltaire Pascual wrote: > Hi Chris, > > Here's my configuration: > CUT OK. Now it's more clear. Stupid question... did yoy try disabling firewall and enabling ip_forward? you should have all chains with policy ACCEPT and ip_forward to 1. If it goes... your problem is related to your firewall scripts,otherwise it's a iptables problem. More stupid question (just to be sure) I guess this box is the default gateway for your lan. right? (you reach the internet natted by this box) To be honest i always prefer to give vpn remote client different IP... (for example.. 192.168.1.x) to be more clear... but this is not the problem! Let me know. bye xchris