On Friday 28 November 2003 12:33, Akos Szalkai wrote: > Hello, > > is there any kind of patch (or even consideration to create one) for > packet mangling in the POSTROUTING chain after NAT? (At least as far as > I see, right now it's mangle first, then NAT.) I can also see the > advantages of mangle before NAT, so perhaps the ideal solution would be > mangling twice on the POSTROUTING chain, if it is possible. > > The situation where I would find mangling after NAT very handy is the > following. I have two independent internet connections, and a few NAT > rules which eventually decide the source address of the outgoing packet. > And only now, knowing the source address is it possible to route the > packet correctly. Since we are way after routing here, only mangle > could help. So you want to mangle the packet based on which interface it gets SNATed to in POSTROUTING? Could you post the nat and mangle rules you're using or would like to use? Jeff