/* HINT: Search archives @ http://www.indyramp.com/masq/ before posting! */



>> > I have the following problem: When forwarding traffic over a given
>> > interface i want the IP address re-written to a rule I specify.
>> > 
>> > ipchains -A forward -s x.y.z.w -i ppp1 -j MASQ
>> > 
>> > Which, AFAICT, just re-writes x.y.z.w into whatever address the ppp1
>> > iface happens to have.
>> 
>> That is all that Masq is ever going to do.  It's how it's designed. 
>> What use do you feel you would get, if you could put some other IP
>> address out?
>> 
>> If what you want is to send out the IP address of one of your *other*
>> interfaces, then simply route traffic through that interface, and the
>> masq will put that IP on the packets sent.

> I've run into this before. The situation was: I have a high-bandwidth
> connection and a low-bandwidth connection. I want certain traffic to
> go out the low-bandwidth connection, but the source IP should be that
> of the high-bandwidth connection so that the reply comes back via the
> high-bandwidth connection.

> We were playing around with doing this through aliases, but were
> having problems because the masquerade code always uses the first IP
> address associated with an interface, even if the traffic is routed
> via one of the aliases on that interface.

This, and my original posting is -- and i have to apologize for that
but i realized it only after posting -- no more than an "static NAT"
application, which is only loosely related to IP Masquerading. There
is some (IMHO) feeble work in this area on Linux. The final thing is
that IPMasquerading (and the associate ipchains tool) and static  NAT
are different things and have different uses. For the intrested, a
useful link for static NAT on Linux 2.2 and  a good paper about the differences 
between the two is: 

http://www.csn.tu-chemnitz.de/HyperNews/get/linux-ip-nat.html


Cheers,

Florian


_______________________________________________
Masq maillist  -  [EMAIL PROTECTED]
Admin requests can be handled at http://www.indyramp.com/masq-list/
or email to [EMAIL PROTECTED]

PLEASE read the HOWTO and search the archives before posting.
You can start your search at http://www.indyramp.com/masq/

Reply via email to