Carlos Mtz-Troncoso a écrit : > > I just changed some -I for -A and moved > iptables -A FORWARD -j DROP > to the end and it works! Why not set the default policy to DROP instead of that terminal rule ? This way you could append new rules more easily. -- To unsubscribe from this list: send the line "unsubscribe netfilter" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html