Ok, I've upgraded to kernel 2.4.22, and the same behaviour is being exhibited. To recap the problem: Packets being nat'd on the OUTPUT chain of a machine are still being sent on the same interface they would have without the nat, and ignoring the route that aims them to the right iface for that dest addr. Evan On Thu, 23 Oct 2003, Patrick McHardy wrote: > Evan Harris wrote: > > >I am using a stock linux kernel 2.4.20, with iptables 1.2.8. > > > > > > > Try 2.4.22 first, there were countless changes, some related to > routing. > > Best regards, > Patrick