From mboxrd@z Thu Jan 1 00:00:00 1970 From: "Steen Suder, privat" Date: Mon, 15 Dec 2003 10:41:49 +0000 Subject: Re: [LARTC] Problems with ICQ etc. on nano-setup Message-Id: List-Id: References: In-Reply-To: MIME-Version: 1.0 Content-Type: text/plain; charset="us-ascii" Content-Transfer-Encoding: 7bit To: lartc@vger.kernel.org Ben Efros wrote: > Since you are doing SNAT on all the dsl lines, I'd suggest using the -j SAME > target available for netfilter. > > http://netfilter.org/documentation/pomlist/pom-base.html#SAME As I understand it, SAME cannot be used here since the "loadbalancing" in a nano-setup is done by the routing (multiple default gateways) and, thus, the traffic is already going out a particular interface when it reaches the POSTROUTING chain (where SAME lives). Also, we have only one public IP on every WAN-if. If I just could manipulate the routing in the kernel to tie new connections from a given LANuser to a specific WANif, at least for a brief period of time, I'd think the issue would be solved. -- Mvh. / Best regards, Steen Suder ICQ UIN 4133803 _______________________________________________ LARTC mailing list / LARTC@mailman.ds9a.nl http://mailman.ds9a.nl/mailman/listinfo/lartc HOWTO: http://lartc.org/