I've got a RH7.2 system, with kernel 2.4.17, and am using the iptables modules that come with that kernel, and it's doing masquerading.
Are the ip_conntrack_ftp and ip_nat_ftp modules not supposed to autoload? I have to manually run insmod ip_conntrack_ftp insmod ip_nat_ftp (and in that order too) to do non-PASV FTP thru it from the private address side to an FTP server on the outside side. -- Mark Atwood | Well done is better than well said. [EMAIL PROTECTED] | http://www.pobox.com/~mra
