On Wednesday 2008-06-18 16:49, Michal Soltys wrote: > Hello > > After finding this pretty recent and nice summary of packet flow: > > http://jengelh.medozas.de/images/nf-packet-flow.png (1) > > I noticed that in case of locally generated packets (routed through > bridge's port), ebtables nat postrouting is evaluated _after_ > iptables nat postrouting, > > My question - does current behaviour (as in (1)) is inteneded, or > is it perhaps a bug, and diagram (2) should be right ? (1), because it is recent :-) commit 2bf540b73ed5b304e84bb4d4c390d49d1cfa0ef8 describe-tag v2.6.19-3516-g2bf540b Author: Patrick McHardy <kaber@xxxxxxxxx> Date: Wed Dec 13 16:54:25 2006 -0800 [NETFILTER]: bridge-netfilter: remove deferred hooks -- To unsubscribe from this list: send the line "unsubscribe netfilter" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html