On Wed, Sep 01, 2004 at 11:24:41PM -0400, Jason Opperisano wrote: > i can simplify it to: > > -A FORWARD -p tcp -s 1.2.3.4 -d 10.10.10.3 --dport 80 -j ACCEPT Ok easy enough I guess :) > > it will block access from my local LAN also via. the squid proxy and yes > > the gateway (squid proxy) machine does have 3 cards. > > yes--you're probably right that it would break access from the local LAN > in your current configuration So, what do I do for such a case? -Payal