1. You have INPUT rules, but no OUTPUT ones for returning packets. 2. You have a FORWARD rule in one way, but nothing on the other. -- http://sid.rstack.org/ PGP KeyID: 157E98EE FingerPrint: FA62226DA9E72FA8AECAA240008B480E157E98EE >> Hi! I'm your friendly neighbourhood signature virus. >> Copy me to your signature file and help me spread!