I am trying to setup a firewall for a LAN that has more than 40 servers in production. All the production servers have public IP addresses. I have looked at several scripts available on line to build from and I have failed to get one that caters for this type of scenario. My router's internal interface is 65.x.x.1. Does anybody know of a way around this while keeping my external IP's or must I use private IP's for my internal machines? Do I have to set up the default gateway on production servers as my routers internal interface of use my firewall trusted interface as default gateway? All help and pointers will be greatly appreciated. Eddie