On Tuesday 2005-October-11 08:57, Ignatich wrote: > Since ipt_owner does not work in PREROUTING chain and fwmark is > pointless, I thought that ipt_ROUTE from p-o-m can help me. Why is fwmark pointless? > Any ideas how to solve my problem? I would try -j MARK --set-mark $UID for your -m owner matched packets and use a ip rule / ip route combination. I've not done this, but I don't see why it wouldn't work. -- mail to this address is discarded unless "/dev/rob0" or "not-spam" is in Subject: header