dan;
 
yes, i can ping client to server and server to client.
i looked at ipchains -L -n and the only source other than 0.0.0.0/0 was 192.168.1.1
which is the ip address of the server and the target was accept at ports 53 -> *.
the other accept was prot all source 0.0.0.0/0 and ports n/a.
everything else had target of reject (tcp udp) et.al.
chain forward policy is accept
chain output  policy is accept
 
now to be honest with you, i haven't much of a clue what the above means.  hopefully, you do.
 
any more help muchly appreciated.
 
 
jim s