<quote who="Andy Whitcroft"> <snip> > iptables -A FORWARD -d 10.0.0.1/255.0.0.255 -j ACCEPT </snip> That is cool, I hadn't thought of masking like that. While it might not be the perfect solution for me, I can probably make this work pretty well. Thanks to all who responded, much appreciated. Zack