In message <19990913170314.B1324@3net.net.pl> you write: > Unfortunately unwanted packet drop error exists even after not [snip] > Chain FORWARD (policy DROP 263 packets, 10924 bytes) That'd do it. When a packet is dropped, and CONFIG_NETFILTER_DEBUG is enabled, it gets reported. I should submit a patch to Linux to get rid of this. Rusty. -- Hacking time.