Would it be possible to have the bridge route something to its loopback interface in order to provide a service that is bound to the localhost? If I use DNAT to route a packet to the loopback interface, would this be possible? I've tried it without success, but I may have the rules wrong.
$IPT -t nat -A PREROUTING -s $ME -d $SOME_IP -j DNAT --to-destination 127.0.0.1 $IPT -A INPUT -i lo -s $ME -j ACCEPT $IPT -A OUTPUT -o lo -d $ME -j ACCEPT I don't have a post routing rule because as I understand it, once the PREROUTING rule hits, the packets will not traverse the nat table again. I've added a static arp entry to my client to ensure that the packets with $SOME_IP are directed at the bridging firewall. Rob _______________________________________________ Bridge mailing list [EMAIL PROTECTED] http://www.math.leidenuniv.nl/mailman/listinfo/bridge
