Re: REDIRECTing many ports to one leads to 4-tuple conflicts

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



> You mean using TPROXY instead of REDIRECT, right? I mean we had this usecase originally with TPROXY. So that should work.

Yes, I got them mixed up, thanks.

> Open multiple ports with the proxy :)

I had considered this but the issue is we need to accept traffic on
every port. We could open more than a single port to redirect to (say
10 preallocated ports) to make it less likely to occur, but that seems
to just mask the problem rather than resolve it entirely.



[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux