Re: chain/table traversal for loopback packets

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Hello,

Curby a écrit :
> Hello, I'm trying to understand
> http://www.frozentux.net/iptables-tutorial/images/tables_traverse.jpg
> 
> Would a packet created locally and sent over the loopback interface
> traverse the POSTROUTING and PREROUTING hooks as implied by the
> diagram,

Yes. However be aware that the nat/PREROUTING chain is skipped even for
the first packet of a new connection because at that stage the
connection is already confirmed. Thus destination NAT must be performed
in OUTPUT.

> or does the last Routing Decision notice that it's bound for
> the local host and send it straight to the beginning of the INPUT
> hook?

No.
--
To unsubscribe from this list: send the line "unsubscribe netfilter" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at  http://vger.kernel.org/majordomo-info.html

[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux