> As far as I see, it's a chicken and egg problem: the kernel must lookup > the routing table first to select a source address and that can't be > changed later by policy routing. You are correct. > In the bugzilla thread Ambroz Bizjak suggested using SNAT. Why doens't it > a good solution? SNAT is not supposed to be used that way.. better would be NETMAP. But still I feel it is not right aproach. Okey, lets cut it. I know that this patch is for very specific setups that are used very rary. I rather wanted to have tech talk here about how I've done certain things. Lets it leave it as is. Patch is working fine (both SMP and non SMP hosts). If someone will be interested in it, can pick it up and mail me directly. Regards, Borg -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html