From mboxrd@z Thu Jan 1 00:00:00 1970 From: Nickola Kolev Date: Wed, 27 Nov 2002 19:02:26 +0000 Subject: [LARTC] transparent PAT MIME-Version: 1 Content-Type: multipart/mixed; boundary="=.wj:wTwoZrQUbQV" Message-Id: List-Id: To: lartc@vger.kernel.org --=.wj:wTwoZrQUbQV Content-Type: text/plain; charset=US-ASCII Content-Transfer-Encoding: 7bit Hello, everyone! I would like to solve the following problem. Btw, I'm terribly sorry about the pseudo-asciiart, but that's all I can paint as a tropology. I'm hoping it'll be enough. ----Internet---- | | | eth0 machine A routing+ipchains eth1 | ------------------ machine B So, given I'm running kernel 2.4.19 and using ipchains (don't ask me why, but I'm bounded to this config), I would like to reroute everything that's passing thru eth1 on machine A from the internal lan and has dport XXXX to the same port on machine B. The hole thing has to be completely transparent. I tried some "advanced routing" stuff, like marking those packets with fwmark and building a separate routing table for them, but alas. Notice that the two machines are on the same LAN segment. I've already tried also some userspace solutions, which didn't work, like redir, tircproxy, transproxy, etc. but they didn't work either, complaining abount not able to bind to non-local port. And yes (mr. Brown), I know about the /proc/sys/net/ipv4/ip_nonlocal_bind switch, listed in plorf.net/linux-ip/. Any suggestions (or help) are very much welcome. 10q for your time, Nickola --=.wj:wTwoZrQUbQV Content-Type: application/pgp-signature -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.1 (GNU/Linux) iD8DBQE95RbGKagUb5QT4IYRApyWAKCUL/EyY8OguYDY5tH3bLK9qadD5gCdFIA+ IS40uL40k+eePd/L0oXBDGU= =HgXV -----END PGP SIGNATURE----- --=.wj:wTwoZrQUbQV-- _______________________________________________ LARTC mailing list / LARTC@mailman.ds9a.nl http://mailman.ds9a.nl/mailman/listinfo/lartc HOWTO: http://lartc.org/