Re: TCP redirect external to external host

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Tuesday 09 December 2003 7:40 pm, Örjan Persson wrote:

> Antony Stone (Antony@xxxxxxxxxxxxxxxxxxxx) wrote:
> > If it is not true that the real source IP and the real destination IP
> > exist on the same interface of the netfilter machine, repost your query
> > with a bit more detail and we may be able to help futher.
>
> The situation is that I have a hostname where there are both SMTP and
> DNS services atm. The mail service is beeing migrated to another host,
> and since I can't just change the IP for the hostname (would break DNS
> services) I would like to have a temporary redirect to the new
> mailservice for the SMTP-service, until the ppl using it has changed
> their mail settings to use the new hostname.
>
> So, I have two external host with two external IP's. They exists on the
> same subnet too. Both uses the same gateway.

i am afraid that in this situation you cannot achieve the solution you would 
like.   DNAT on its own will not work.   DNAT+SNAT will work, but you will 
see a constant source IP in your mail server logfiles.   Be happy that this 
is only a temporary arrangement.

Antony.

-- 
If builders made buildings the way programmers write programs, then the first 
woodpecker to come along would destroy civilisation.

                                                     Please reply to the list;
                                                           please don't CC me.




[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux