On Thursday 2010-05-06 16:08, ratheesh k wrote: >I googled and found that AH protocol pkt cannot be NATed , And ESP >protocol pkt NATing wont work in some use cases . > >Is this problem is solved in newer kernels ? This is not a kernel problem. >Is there any ALG for nating this packets ? No, it's cryptographically signed, so any modification would be visible. -- To unsubscribe from this list: send the line "unsubscribe netfilter" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html