RE: snat to multiple source ip

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



 

> -----Original Message-----
> From: netfilter-bounces@xxxxxxxxxxxxxxxxxxx 
> [mailto:netfilter-bounces@xxxxxxxxxxxxxxxxxxx] On Behalf Of 
> Marco Berizzi
> Sent: Tuesday, September 20, 2005 11:17 AM
> To: netfilter@xxxxxxxxxxxxxxxxxxx
> Subject: Re: snat to multiple source ip
> 
> Derick Anderson wrote:
> 
> > Uneducated, lazy guess: the SNAT target supports only one 
> "--to [IP]"
> > and the command parser ignores the extraneous "--to [IP2]". You can
> test
> > this by switching the two IPs and see if you go out on a different 
> > address.
> 
> Nope!
> 
> >From "man iptables":
> 
> "...You  can  add  several --to-source options.  If you 
> specify more than one source address, either via an address 
> range or multiple --to-source options, a simple round-robin 
> (one after another in
> cycle) takes place between these adresses."

Well that's neat, I'll have to try that some time. Might work nicely as
a load balancer where I work.

Derick



[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux