> is it possible in iptables to forward a port, range of ports or all > ports (ideally all ports) to all addresses on a subnet (rather than > select an ip address at random from the subnet as would be done with > the "-to-destination 192.168.0.2 192.168.0.254" switch)? Sort of "Broadcast DNAT"? Not that I know of. (But you could write a userspace replicator in conjunction with using tproxying.) Jan -- ft: http://freshmeat.net/p/chaostables/