Hi, On Wednesday 15 February 2006 18.16, Keserű Kornél wrote: > Thanks for the explanation! > Does this mean that a nat function, realized with a DNAT+SNAT rule > pair will not work for many-to-one connections? What I wanted to > realize with those rules is that UDP packets received from anywhere > (several sources) are forwarded to one concrete destination and the > source of the forwarded packets is always changed to the same. > If so, would a NOTRACK rule in the raw table help here (don't track > those connections)? Unfortunately not. You'd need stateless NAT for UDP, which is not (yet) implemented in Netfilter. (But occasionally it would be a really cool and useful feature.) -- KOVACS Krisztian