it can also match CONNMARK (fwmark). so just mark what you want to send back then. On Tue, Dec 18, 2012 at 4:34 PM, Alex Bligh <alex@xxxxxxxxxxx> wrote: > > On 18 Dec 2012, at 23:51, 叶雨飞 wrote: > >> >> ip route add table <table_name> default via xxxx dev xxx >> ip rule add from xxxx table <table_name> >> >> This will give you ability to choose nexthop base on source ip. > > The issue with that approach is that I don't want arbitrary > traffic from 10.10.10.99/24 to go via Provider A - just > the replies to DNAT inbound traffic. > > -- > Alex Bligh > > > > -- To unsubscribe from this list: send the line "unsubscribe netfilter" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html