Andy Furniss wrote:
To get round the wan egress case of ifb hooking after snat just mark the traffic with netfilter according to local addresses and match the marks.
In fact you don't even need ifb for egress here - just shape on the interface direct, but you will still need to netfilter mark for the local addresses.
-- To unsubscribe from this list: send the line "unsubscribe lartc" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html