>> >> That iptables(1) manpage got it right: >> >> Later Kernels (>= 2.6.11-rc1) don't have the ability to NAT >> to >> multiple ranges anymore. > > Well, the manpage included in my iptables 1.2.11 does't contain this. That's a ... *slightly* old iptables. > I wonder what happens when you try to create a NAT rule with multiple > --to with > iptables < 1.3.4 and Linux >= 2.6.11. Will probably return "unknown error 4294967295" (-1). Jan Engelhardt --