Tom Eastep <[email protected]> wrote: >> Is there any way to fix this ? > > Partially. With ACCOUNTING_TABLE=mangle, rules in the PREROUTING > section of the accounting file are traversed prior to DNAT. > Unfortunately, rules in the POSTROUTING section are still traversed > before SNAT/MASQUERADE. See > http://www.shorewall.org/NetfilterOverview.html.
Hmm, that's "inconvenient" :-( The diagram is useful, but doesn't show where accounting rules fit into it. But your explanation is sufficient, thanks. ------------------------------------------------------------------------------ Check out the vibrant tech community on one of the world's most engaging tech sites, SlashDot.org! http://sdm.link/slashdot _______________________________________________ Shorewall-users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/shorewall-users
