Kapetanakis Giannis wrote: > On 06/11/09 17:55, Patrick McHardy wrote: >> The manpage is incorrect (patches welcome :), it will use the first >> port as long as the tuples don't clash. The --random option can be >> used to randomly select a port from the range. >> -- >> To unsubscribe from this list: send the line "unsubscribe netfilter" in >> the body of a message to majordomo@xxxxxxxxxxxxxxx >> More majordomo info at http://vger.kernel.org/majordomo-info.html >> > > --random does the job both for DNAT and REDIRECT > I guess random is better that nothing :) > > Just for clarification: the state of the packet will be remembered right? > I don't want to send it first to one port and later to another. Correct. > ps. I found another bug > --random in DNAT has to be put at the end of the rule > otherwise if you put it before --to-destination > error: "Multiple --to-destination not supported" Thanks, fixed in git. -- To unsubscribe from this list: send the line "unsubscribe netfilter" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html