Le jeu 07/10/2004 à 16:31, Lucio a écrit : > The problem is that I don't know how to make the kernel route packets between > the DMZ and WAN NICs without using a SNAT rule: can anyone help me please? Maybe I don't get your point there, but to simply route packets, you just have to do : echo 1 > /proc/sys/net/ipv4/ip_forward And then set FORWARD chain rules accordingly to traffic you want to allow. And that's it. -- http://www.netexit.com/~sid/ PGP KeyID: 157E98EE FingerPrint: FA62226DA9E72FA8AECAA240008B480E157E98EE >> Hi! I'm your friendly neighbourhood signature virus. >> Copy me to your signature file and help me spread!