On Thursday 11 December 2003 7:16 pm, Michael Gale wrote: > oh dumb ass -- I am fired !!! Look on the bright side - you chose the right subject line :)) Antony > On Thu, 11 Dec 2003 18:51:09 +0000 > > Antony Stone <Antony@xxxxxxxxxxxxxxxxxxxx> wrote: > > On Thursday 11 December 2003 6:09 pm, Michael Gale wrote: > > > Hello, > > > > > > I have a firewall setup with the default policy to block. > > > > > > I have a DNAT rule to DNAT incoming connections to a internal IP. > > > I then have a EXT to INT forward rule for port 80 - state NEW > > > I then have a EXT to INT forward rule for ESTABLISHED connections > > > I then have a INT to EXT forward rule for ESTABLISHED connections > > > > > > This is working great the problem ... > > > > > > I am not able to get this machine to make a out bound connection :( > > > > Because there is no rule INT to EXT for NEW packets. > > > > Antony. > > > > -- > > Ramdisk is not an installation procedure. > > > > Please reply to the > > list; please don't CC me. -- Having been asked for a reference for this man, I can confirm that you will be very lucky indeed if you can get him to work for you. Please reply to the list; please don't CC me.