On Thursday 2011-06-09 05:20, Amos Jeffries wrote: > > A transparent proxy is equivalent to a NAT module in all respects. Not quite. :) nf_nat does not consume a local TCB - though it does consume a port - whereas a classical proxy's connections (e.g. squid) can show up in `ss -p`. -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html