Hi, I don't know much about SNAT. But is this equivalent to i-spoofing in such case? Is this how SNAT works? Assume I have a internal ip 192.168.0.10. All traffic coming from it should be seem as coming from 202.1.1.1. So I use SNAT and POSTROUTING and now connection seems to take place from 202.1.1.1. But isn't it similar to ip-spoofing? Thanks a lot and bye. With warm regards, -Payal -- "Visit GNU/Linux Success Stories" http://payal.staticky.com Guest-Book Section Updated.