[NETFILTER]: Don't exclude local packets from MASQUERADING Increases consistency in source-address selection. Signed-off-by: Patrick McHardy --- commit 17bfdaf02646cc6fafa9fa661e4c6e8775a9af3a tree 6818c5239c4c5a2deefdb328525e2e9c2bdfdd72 parent 5f234544ded29913154a728719cfcf3cbceb9667 author Patrick McHardy Mon, 15 Aug 2005 00:32:08 +0200 committer Patrick McHardy Mon, 15 Aug 2005 00:32:08 +0200 net/ipv4/netfilter/ipt_MASQUERADE.c | 5 ----- 1 files changed, 0 insertions(+), 5 deletions(-) diff --git a/net/ipv4/netfilter/ipt_MASQUERADE.c b/net/ipv4/netfilter/ipt_MASQUERADE.c --- a/net/ipv4/netfilter/ipt_MASQUERADE.c +++ b/net/ipv4/netfilter/ipt_MASQUERADE.c @@ -86,11 +86,6 @@ masquerade_target(struct sk_buff **pskb, IP_NF_ASSERT(hooknum == NF_IP_POST_ROUTING); - /* FIXME: For the moment, don't do local packets, breaks - testsuite for 2.3.49 --RR */ - if ((*pskb)->sk) - return NF_ACCEPT; - ct = ip_conntrack_get(*pskb, &ctinfo); IP_NF_ASSERT(ct && (ctinfo == IP_CT_NEW || ctinfo == IP_CT_RELATED || ctinfo == IP_CT_RELATED + IP_CT_IS_REPLY));