Re: mangle after nat in the postrouting chain

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Friday 28 November 2003 12:33, Akos Szalkai wrote:
> Hello,
>
> is there any kind of patch (or even consideration to create one) for
> packet mangling in the POSTROUTING chain after NAT?  (At least as far as
> I see, right now it's mangle first, then NAT.)  I can also see the
> advantages of mangle before NAT, so perhaps the ideal solution would be
> mangling twice on the POSTROUTING chain, if it is possible.
>
> The situation where I would find mangling after NAT very handy is the
> following.  I have two independent internet connections, and a few NAT
> rules which eventually decide the source address of the outgoing packet.
> And only now, knowing the source address is it possible to route the
> packet correctly.  Since we are way after routing here, only mangle
> could help.

So you want to mangle the packet based on which interface it gets SNATed to in 
POSTROUTING? Could you post the nat and mangle rules you're using or would 
like to use?

Jeff


[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux