2011/8/21 Pandu Poluan <pandu@xxxxxxxxxxx>: > (sorry for top posting; Gmail mobile java client sucks) > > No, it should be port 68 (got my web access, I can now verify the number). > > We want all packets *outgoing* of the box *destined* for port 68 (DHCP > server's listening port) to bypass NAT. I ran the command line you showed me for both ports. Got the same results, too. -- Vinicius Massuchetto -- To unsubscribe from this list: send the line "unsubscribe netfilter" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html