Forgive me if this is a nubie question, but I need to impliment something quick for my customer. Anyone have suggestions for a rule to allow IPsec packets to pass from a NATed subnet?? I know linksys,dlink, et. all have a firewall checkbox to alow ipsec vpns to work. Thanks! marshall