I'm just curious, will DNAT'ing work with the bridging netfilter patch and ebtables installed? Everything still appears to go PREROUTING -> FORWARD -> POSTROUTING, but when I try DNAT'ing, the packets appear to be lost. Here is my ruleset:
-t nat -A PREROUTING -i eth1 -p tcp -d 198.122.149.0/24 --dport 80 -j DNAT --to 198.122.149.10:80 -A FORWARD -i eth1 -o eth0 -p tcp -d 198.122.149.10/32 --dport 80 -j LOG --log-level 0 -A FORWARD -i eth1 -o eth0 -p tcp -d 198.122.149.10/32 --dport 80 -j ACCEPT The logging was inserted in there for test purposes, and shows no matching packets. None of the packets arrive at 198.122.149.10:80 (those are fake addresses). I believe this is the same ruleset that worked when I was doing IP forwarding (before I installed the bridge/netfilter patch). I'm assuming that it can't be done, or is perhaps a routing issue (ie. it doesn't know where 198.122.149.10 is located), but I just want to make sure. Thanks, Eric __________________________________________________ Do You Yahoo!? Send FREE Valentine eCards with Yahoo! Greetings! http://greetings.yahoo.com _______________________________________________ Bridge mailing list [EMAIL PROTECTED] http://www.math.leidenuniv.nl/mailman/listinfo/bridge
