> -A FORWARD -s 192.168.1.0/24 -o eth0 -j ACCEPT Applied. Well, don't shoot me. I setup eth0 as external device only in /etc/Bastille/bastille-firewall.cfg, but it has to be eth0 and ppp0 ... > advice 1: double check your data before posting. > > advice 2: make yourself familiar with iptables. Will follow them next time. :) As a contribution to Bastille I left the script files and bogon.list on my server, others are removed. Thanks again both for your help, even when the mistake was here and not in iptables nor Bastille. But anyway. The InteractiveBastille tool is still not regonizing DB5.0 as OS type. I already filled a bug report out. Hope they will fix it. Roland -- To unsubscribe from this list: send the line "unsubscribe netfilter" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html