On Friday 31 May 2002 1:43 am, Claudio Mio wrote: > However I still cant ping a machine on the internal network even though > machines on the internal network can ping the firewall.
Okay - that confirms that the firewall knows how to route packets back to the internal machines. > My routing table is: > Kernel IP routing table > Destination Gateway Genmask Flags Metric Ref Use > Iface > 217.35.199.203 0.0.0.0 255.255.255.255 UH 0 0 0 > ppp0 192.168.0.0 0.0.0.0 255.255.255.0 U 0 0 > 0 eth0 127.0.0.0 0.0.0.0 255.0.0.0 U 0 0 > 0 lo 0.0.0.0 0.0.0.0 0.0.0.0 U 0 0 > 0 ppp0 Looks good (apart from the formatting which my mailer has just messed up). What are your INPUT and OUTPUT chains (and if you have them, what are your PREROUTING and POSTROUTING chains in the nat table) ? Antony.