Adrian- Thanks for the info. Question is, if I am listening with squid on port 80, do I still need to run iptables? I thought iptables was only needed to do redirect from port 80 to 3128 if squid was not or could not be un on port 80. Does any happen to know which Cisco IOS versions work with WCCP v2 and squid? I find people saying it is buggy and to start with a known working version and work your way up to a needed release, but I can't seem to confirm a known working version. Nick -----Original Message----- From: Adrian Chadd [mailto:adrian@xxxxxxxxxxxxxxx] Sent: Thursday, February 21, 2008 2:32 PM Subject: Re: problem with wccp v2 and cisco G'day, * Yes you still need iptables to redirect packets going to arbitrary destinations into Squid running on a port. * Traffic will only flow over the GRE tunnel one way - from the router to the cache.