oh dumb ass -- I am fired !!! Michael. On Thu, 11 Dec 2003 18:51:09 +0000 Antony Stone <Antony@xxxxxxxxxxxxxxxxxxxx> wrote: > On Thursday 11 December 2003 6:09 pm, Michael Gale wrote: > > > Hello, > > > > I have a firewall setup with the default policy to block. > > > > I have a DNAT rule to DNAT incoming connections to a internal IP. > > I then have a EXT to INT forward rule for port 80 - state NEW > > I then have a EXT to INT forward rule for ESTABLISHED connections > > I then have a INT to EXT forward rule for ESTABLISHED connections > > > > This is working great the problem ... > > > > I am not able to get this machine to make a out bound connection :( > > Because there is no rule INT to EXT for NEW packets. > > Antony. > > -- > Ramdisk is not an installation procedure. > > Please reply to the list; > please don't CC me. > > -- Michael Gale Network Administrator Utilitran Corporation