On 2020/03/22 10:26, Darius wrote:
Great Frank that helps! I had another idea of mark tcp and udp packets with the same mare in prerouting and then use mark in the rule. Any downsides with this solution compared to payload expression?
I think your packet-marking method would work. But then you'd need 2 rules in prerouting as well as a rule in filter...right? Plus complexity of remembering which mark you're using for what. I'd prefer to avoid that if possible.
Best regards, Frank