I have a W2K server on my internal LAN xxx.xxx.xxx.xxx (private ip) I am using iptables and need to connect from the outside to the W2K server using MS Terminal Service. I need to open and forward port 3389 TCP and UDP for this to work as far as I know This is what I came up with so far.Still not working,all other functions and services works *nat -A PREROUTING -p tcp -m tcp --dport 3389 -j DNAT --to-destination xxx.xxx.xxx.xxx -A POSTROUTING -o eth0 -j SNAT --to-source yyy.yyy.yyy.yyy(servers external card) -A PREROUTING -p udp -m udp --dport 3389 -j DNAT --to-destination 172.16.81.2 *filter -A FORWARD -p tcp -m tcp --dport 3389 -j ACCEPT -A FORWARD -p udp -m udp --dport 3389 -j ACCEPT -A INPUT -p tcp -m tcp -s 0/0 --dport 3389 -j ACCEPT -A INPUT -p udp -m udp -s 0/0 --dport 3389 -j ACCEPT Any help would be much appreciated Martin Schoeman -- Psyche-list mailing list Psyche-list@xxxxxxxxxx https://listman.redhat.com/mailman/listinfo/psyche-list