[tproxy] tproxy development version 1.1.3

Balazs Scheidler bazsi@balabit.hu
Tue, 4 Nov 2003 09:49:01 +0100


On Mon, Nov 03, 2003 at 10:58:40PM -0800, Tim Burress wrote:
> Hi Krisztian,
> 
> So does this interaction with the NAT tables explain
> why IP masquerade rules are being ignored when a
> connection is tproxied? I wonder if there is a good
> way around that?

definitely, if you have a matching TPROXY rule it will never even enter the
NAT table. What do you want to accomplish? If a TPROXY rule is matched the
connection will be processed by a userspace proxy, there's no point in masquerading.

-- 
Bazsi
PGP info: KeyID 9AF8D0A9 Fingerprint CD27 CFB0 802C 0944 9CFD 804E C82C 8EB1