>Good point. Is there any reason I shouldn't put my rules on the mangle >POSTROUTING table and kill 2 birds with one rule? None that I can see, though I must admit that I swear sometimes I see packets missing POSTROUGING; though, I blame that on my bogon ray generator, and not Netfilter itself.