[zorp] Virtual IP PlugProxy

Phil Moors zorp@lists.balabit.hu
Thu, 28 Oct 2004 03:22:38 -0400


What is the right way to use a virtual ip address (alias) bound to an
outside interface and forward traffic to a host in the private network? I
can get the Plug to work with the eth3 address, but not with the eth3:1
address.

I tried setting up an InetZone with the ip address bound to  eth3:1, but the
packets disappear after hitting the tproxy rule in the INPUT chain. I can
see them move through PREROUTING and then to the PRxxx chain, but they never
get back to INPUT.

Or, am I going about this the wrong way?


Thanks,
Phil