Hello, Please don't reply to an existing thread when posting a new topic. Vikram Ragukumar a écrit : > > I would like to know how to construct a rule to intercept packets that > belong to the port translated stream, but now are coming from Interface > 2 and would like to encrypt them before they go out on Interface 1 ? I guess that connmark+CONNMARK would do the job. -- To unsubscribe from this list: send the line "unsubscribe netfilter" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html