hello, I have two e interfaces. On e0/0, I applied ext ip 207.x.x.1, on e0/1, I applied int 192.168.1.1. I labeled e0/0 with ip nat outside, and e0/1 with ip nat inside. in global, i configured ip nat inside source list 1 interface e0/0 overload, where acl 1 is permit any. Traffic passes though fine, and everything works great. However, I am unable to telnet to router using EXTERNAL ip. I can however, telnet using internal ip from internal network of course. I did not set any configuration for access-class, in fact i have no other acls at all. Any suggestions on what I might be doing wrong??? thanks telemachus _________________________________ FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]