I'll try it from outside the firewall. As I tried in the past rdr/nat
rules on specific interfaces will only work on incoming, not outgoing
connections.
I used the ip address of the lo1 interface, which is a public one I
successfully use as for internal ospf routing (between firewall and the
bgp border routers) and connections (ssh) from outside.
I'll do this next times the problem occures. Actualy all works fine.
Regards,
Falk