[snipped original] Might be worth turn trace on : iptables -t raw -A OUTPUT -j TRACE See which rules the packets hit; if you want to cut down the amount of traces just add the relevant matches - I tend to trace everything until I know what I'm the packet(s) look like what I expect and then start focusing in. -- Richard Horton Users are like a virus: Each causing a thousand tiny crises until the host finally dies. http://www.pbase.com/arimus - My online photogallery http://www.richardhorton.info -- To unsubscribe from this list: send the line "unsubscribe netfilter" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html