Would it be possible to have the bridge route something to its loopback
interface in order to provide a service that is bound to the localhost?  If
I use DNAT to route a packet to the loopback interface, would this be
possible?  I've tried it without success, but I may have the rules wrong.

$IPT -t nat -A PREROUTING -s $ME -d $SOME_IP -j DNAT --to-destination
127.0.0.1
$IPT -A INPUT -i lo -s $ME -j ACCEPT
$IPT -A OUTPUT -o lo -d $ME -j ACCEPT

I don't have a post routing rule because as I understand it, once the
PREROUTING rule hits, the packets will not traverse the nat table again.

I've added a static arp entry to my client to ensure that the packets with
$SOME_IP are directed at the bridging firewall.

Rob

_______________________________________________
Bridge mailing list
[EMAIL PROTECTED]
http://www.math.leidenuniv.nl/mailman/listinfo/bridge

Reply via email to