Hello everyone, I have a system running redhat with kernel 2.4.26 and iptables 1.2.1a that is a routing firewall. If I use the mac-source extension to match packets from the internal network (a workstation for which this system is the gateway) it works fine, but it won't match packets originating from the outside world. The rule I use is this: iptables -A FORWARD -m mac --mac-source 00:00:00:00:00:00 -j ACCEPT It could be me, I may be completely misunderstanding how this is supposed to work. I am by no means a guru.... any help would be appreciated, thanks! Beau