On 29 Oct 2002, Meir Michanie wrote:

> with nat table and DNAT target you can redirect new connections.
> but how can you break all ready established connections and redirect to
> a certain ip?
> 
> mangle support established connections but do not support DNAT.

i think at least in the vanilla kernel, this is not supported. normally, 
you can not redirect an already established connection.

this makes sense - how would the new target machine know how to 
synchronize in on an already established connection, that has an 
established state, and established sequence numbers, etc?

can you explain why you find the need to redirect alerady established 
connections? perhaps this can be remedied...

-- 
guy

"For world domination - press 1,
 or dial 0, and please hold, for the creator." -- nob o. dy


=================================================================
To unsubscribe, send mail to [EMAIL PROTECTED] with
the word "unsubscribe" in the message body, e.g., run the command
echo unsubscribe | mail [EMAIL PROTECTED]

Reply via email to