On 12/9/10 7:53 PM, Nathan Gibbs wrote:
> Is this even doable with shorewall?
> 
> After a packet natches a DROP rule like
> DROP  net:10.0.0.0/8  fw      all
> 
> if the connection came in on port 80,
>       redirect it to port 81
>       let it through
> else
>       Drop it like normal
> endif

No.

Why don't you just put the REDIRECT rule before the DROP rule?

-Tom
-- 
Tom Eastep        \ When I die, I want to go like my Grandfather who
Shoreline,         \ died peacefully in his sleep. Not screaming like
Washington, USA     \ all of the passengers in his car
http://shorewall.net \________________________________________________

Attachment: signature.asc
Description: OpenPGP digital signature

------------------------------------------------------------------------------
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to