> > Explanation: > INTRA_SERVER sends UDP traffic to the INTRA_ROUTER IP, then, INTRA_ROUTER > forwards those packets to the public IP INET_IP In that case, DNAT is ok. Just make sure that no packet (in either direction) can evade INTRA_ROUTER (such as hubs/switches and other sorts of bridges), because that nullifies NAT. Jan Engelhardt --