On Thursday 01 April 2004 9:08 pm, Adam Kennedy wrote: > The iptables -L -nvx output is QUITE lengthy, but I can post if someone > really wants it. I'm a bit itchy over posting it due to wanna be system > crackers. We don't mind if you obscure the IP addresses (so long as we can still tell which is which...) However, from what you have posted, I think the problem is that you have no FORWARD rule to allow the DNATed packets through your firewall? Oh, dear me, no - that's not it - you have a default ACCEPT policy on your FORWARD chain (I'm not surprised you don't want to post your public IP address to the list...) Okay, how's this then - please post all the rules which you think are needed for this pcAnywhere setup to work (with suitable partial obscuring of IPs if you wish). Then we'll tell you if we can see something missing? Regards, Antony. -- People who use Microsoft software should be certified. Please reply to the list; please don't CC me.