Tom Eastep <[email protected]> wrote:

>> Is there any way to fix this ?
> 
> Partially. With ACCOUNTING_TABLE=mangle, rules in the PREROUTING
> section of the accounting file are traversed prior to DNAT.
> Unfortunately, rules in the POSTROUTING section are still traversed
> before SNAT/MASQUERADE. See
> http://www.shorewall.org/NetfilterOverview.html.

Hmm, that's "inconvenient" :-(

The diagram is useful, but doesn't show where accounting rules fit into it. But 
your explanation is sufficient, thanks.



------------------------------------------------------------------------------
Check out the vibrant tech community on one of the world's most
engaging tech sites, SlashDot.org! http://sdm.link/slashdot
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to