On Tue, Nov 04, 2014 at 02:56:58PM +0100, Arturo Borrero Gonzalez wrote: > On 4 November 2014 14:37, Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx> wrote: > > > > I think this needs to be: > > > > % nft add rule nat prerouting redirect [port] [nat_flags] > > > > The port and nat_flags arguments are mutually exclusives. That's why I > used the [port|nat_flags] syntax. iptables allows this: -j REDIRECT --to-ports 8000-8010 --random -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html