Hey, I was wondering if there was an easy way todo this with iptables. I would like to trap any NEW outgoing connections from my box, and run an arbitary script with the destination IP as a command line paramenter when this occurs. Basically I am trying to get ipsec tunnels setup to hosts on my subnet whenever I connect to them (via whatever layer4 protocol). I know the commands to get this going manually, but I need the destination IP, and I would like make the tunnels created 'on demand'. I am kinda new at iptables, so feel free to say rtfm if this is trivial, just give the chapter =)
thx, britt
