I should also add that the original source IP is in the payload of the message.

On Mon, Mar 22, 2010 at 3:42 PM, AM M84 <ammak49@gmail.com> wrote:
Hi, I want to know if it is possible to spoof(UDP) the original source IP of a message that has already been forwarded.


Server1 (Original Source)-->  Server2 (Forwarding Syslog Server )--> Server3 (Server Source Spoofing Server1) --> Final Dest.


Thanks,
AMM