Hi, Here is my setup: Internet | +----+-----+ | Router | +----+-----+ |x.x.x.1 | |x.x.x.2 +----+-----+ x.x.x.33 +-------+ | Firewall |--------------| DMZ | +----+-----+ x.x.x.40 +-------+ |192.168.200.1 | +----+-----+ | LocalNet | +----------+ eth0 (EXT) -> x.x.x.0/27 eth1 (DMZ) -> x.x.x.32/27 eth2 (INT) -> 192.168.200.0/24 I want to run postfix as mail relay and squid as a proxy on the DMZ. I am using SuSEfirewall2 v1.9 on the "firewall" box. I have masquerading already working. I have setup the FW_FORWARD to forward port 80 and 25 to the DMZ. How do I get the outgoing connections working from the DMZ? Right now, I am unable to even ping the router on x.x.x.1 or the EXT interface x.x.x.2. The EXAMPLES file does not cover this scenario at all. I have tried to search the archives of this list but nothing turned up. Hope to get some help from the fine people on this list :) Cheers, Nadeem Hasan