Hi there, I am running a small subnet (/248) and have my mail and my www set to one ip-adress at the moment. I wonder if it is safer to have my firewall to port-forward http, https, pop and smtp to a dmz or if it is better to get two different ip-adresses and alias them on one machine (my firewall)? Any considerations / thoughts are welcome. Thanks for your input, tom