What about an ethernet bridging ? I think (I'm not an expert) that it could be good in your case. You will have a machine without IP (can have remote control) and it can have firewall rules. http://bridge.sourceforge.net/ Just an idea ... >hi all > >I need to protect few servers running services like >http,pop,smtp,radius,smb,bind,mysql more.how can i do this using iptables. >i want these to be blocked from my firewall. all these servers are inside a >2 NIC machine. so can i put the rules in this machine. -- JAn ------------------------------------------------------------------------ To unsubscribe email security-discuss-request@linuxsecurity.com with "unsubscribe" in the subject of the message.