Ruprecht - I read through your script and didn't see anything obvious that could be causing you problems. There was one mistake on line 140: INTLAN="192.168.0.0(24" which is just a typo I suspect. But this could be giving you the problems you. Are you getting any error messages when you run the script? If this is not the problem itself, then I suggest the culprit is with your FORWARD chain. Try setting the default -P to ACCEPT and see if your packets pass. If so, troubleshoot your FORWARD chain from there. -----Original Message----- From: netfilter-admin@xxxxxxxxxxxxxxxxxxx [mailto:netfilter-admin@xxxxxxxxxxxxxxxxxxx]On Behalf Of Ruprecht Helms Sent: Wednesday, October 01, 2003 6:39 AM To: netfilter@xxxxxxxxxxxxxxxxxxx Subject: Problem with adresstranslation Hi, I have a script with some rulesets for iptable. By running the script I can't use an internetconnection from a host in my lan. Only from the firewallhost itselve I can get connection to outsite. My internal lan use the segment 192.168.0.x/ 24 (Subnetmask 255.255.255.0). On which position is a mistake and how have I to configure for proper working. Regards, Ruprecht