Hi,
What is the reasoning for having SNAT happen before ipsec encryption?
It forces one to add special rules in the NAT table to keep this from
happening and
I can't think of one reason why you would want it to be this way.
Please someone enlighten me.
Thanks,
Steve
--
"They that give up essential liberty to obtain temporary safety,
deserve neither liberty nor safety." (Ben Franklin)
"The course of history shows that as a government grows, liberty
decreases." (Thomas Jefferson)
--
To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html