Thinking on this a little more, perhaps maps with multiple similar ports and a algo of choice would be better: nft add rule ip nat prerouting dnat tcp dport map { 80 : 192.168.1.100, 80 : 192.168.1.101 }:balance lc ..or first match or round robin... any toughts? -- Bj(/)rnar -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html