--- "John A. Sullivan III" <jsullivan@xxxxxxxxxxxxxxxxxxxxxxxxxxxxx> wrote: > <snip> > Welcome to netfilter, Kevin. It's a great tool. Thank you very much John. :) Yes it appears to be very useful and robust! > Another great tool is > iproute2 and that will be your key to what you want > to do. It will > allow you to bind multiple IP addresses to the same > NIC. The rest is > handled by DNAT. No need to add a physical > interface for each NAT > address. So how do I tell my ISP that the extra IP's they are going to allocate to me all need to point to the same NIC? Will they be able to do that? I mean, isn't there only one unique MAC address for every NIC card? Do they just route all frames destined for any one of the IP addresses they assign me to the same MAC or something? Thanks for your help and for the great welcome! > In the ISCS network security management interface, > we do this > automatically for you when you specify that a device > is to be exposed > publicly. You can find some training slides > regarding iproute2 in the > training section of the ISCS web site > (http://iscs.sourceforge.net). > You can find the full explanation in a file named > ip-cref.ps somewhere > in your distribution. I'll have to check out ISCS and see what it's all about. Thanks for your help, John. Sincerely, Kevin __________________________________ Do you Yahoo!? Read only the mail you want - Yahoo! Mail SpamGuard. http://promotions.yahoo.com/new_mail