Is it possible to use SNAT like this? (what I'm really asking is whether one can use the ingress interface as part of the NAT tuple): LINUX eth0 <-------- ROUTER ----------- 10.0.1.0/24 \\\\\\\------------ 10.0.1.0/24 \\\\\\------------ 10.0.1.0/24 \\\\\------------ 10.0.1.0/24 \\\\------------ 10.0.1.0/24 \\\------------ 10.0.1.0/24 \\------------ 10.0.1.0/24 \------------ 10.0.1.0/24 Each private / internal address is the same on every interface. I plan to use unnumbered interfaces and proxy ARP at the linux level. -- Alex Bligh -- To unsubscribe from this list: send the line "unsubscribe netfilter" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html