On Tuesday 09 December 2003 7:40 pm, Örjan Persson wrote: > Antony Stone (Antony@xxxxxxxxxxxxxxxxxxxx) wrote: > > If it is not true that the real source IP and the real destination IP > > exist on the same interface of the netfilter machine, repost your query > > with a bit more detail and we may be able to help futher. > > The situation is that I have a hostname where there are both SMTP and > DNS services atm. The mail service is beeing migrated to another host, > and since I can't just change the IP for the hostname (would break DNS > services) I would like to have a temporary redirect to the new > mailservice for the SMTP-service, until the ppl using it has changed > their mail settings to use the new hostname. > > So, I have two external host with two external IP's. They exists on the > same subnet too. Both uses the same gateway. i am afraid that in this situation you cannot achieve the solution you would like. DNAT on its own will not work. DNAT+SNAT will work, but you will see a constant source IP in your mail server logfiles. Be happy that this is only a temporary arrangement. Antony. -- If builders made buildings the way programmers write programs, then the first woodpecker to come along would destroy civilisation. Please reply to the list; please don't CC me.