On Mon, 2005-12-26 at 12:45 +0000, Timothy Murphy wrote: > Dec 26 10:13:47 alfred kernel: Shorewall:net2all:DROP:IN=ppp0 OUT= > MAC= SRC=80.231.0.106 DST=86.43.71.228 LEN=48 TOS=0x00 PREC=0x00 > TTL=117 ID=58867 DF PROTO=TCP SPT=3849 DPT=1433 > WINDOW=16384 RES=0x00 SYN URGP=0 > This message is not related to you httpd: this is somebody trying to connect to MS-SQL on your machine... How are you connecting to the internet: through ppp0? Why are you using DNAT? If you have the fixed IP address on ppp0, all you need to do is setting the appropriate ALLOW rule: AllowWeb net fw as you don't need to forward traffic to another machine. Louis