Hi,
I would like to SNAT icmp fragmentation-needed messages that have source address from private network range (RFC1918). Because these packets are part of valid TCP connection, they are processed by ip_conntrack module and cannot be SNATed... any idea? jn