Damn thats the change I needed to make... I read the advanced NAT PDF and I got the impression that It first nats THEN check policies... Obviously, this is NOT the case SO by adding the external IP to the ruleset - BAM, it started working right of the bat... I soo searched for DHCP on this site and NAT.. And did not get it to work But with your great help.. It-s working like a charm.. SO The zone reflect the NATted actions, but the IP does not. Not that obvious imho... And not like any other FW i've worked. with... Juniper, Checkpoint, Clavister..... So, one more thing to get used to Again, THANKS!!! Much appreciated !!! /C
... View more