[tproxy] Both session stealing and src spoofing.(Proxy-Firewall)

Balazs Scheidler bazsi@balabit.hu
Thu, 19 Jun 2003 16:06:32 +0200


On Thu, Jun 19, 2003 at 11:04:47PM +0900, Yoshioka Tsuneo wrote:
> At now, there is no need to keep source port address of client. 
> So I tried to set "itp.itp_fport=0".
> And it works without problem !
> Thank you.
> 
> P.S.
>   I hope that tproxy kernel patch will be joined to Linux2.5(and 2.6) kernel.
>   I would be happy if you and Linus have such a plan. :-)

This depends a bit more on the netfilter maintainers and DaveM, and they did
not show too much interest until now.

-- 
Bazsi
PGP info: KeyID 9AF8D0A9 Fingerprint CD27 CFB0 802C 0944 9CFD 804E C82C 8EB1