Linux Netfilter discussions
 help / color / mirror / Atom feed
* Redirection - considerations
@ 2003-04-09 11:05 Christian Cernuschi
  2003-04-10 17:47 ` Eric Joe
  0 siblings, 1 reply; 4+ messages in thread
From: Christian Cernuschi @ 2003-04-09 11:05 UTC (permalink / raw)
  To: netfilter

it think it's impossible! (keeping the source address... of course)

an example

A - Client starting connection
B - Server reached by A
C - Destination Server



A calls B
B sends packets to C with source address A
C tries to respond to A!!! 
A doesn't know C (then drops packet)

am i right?


^ permalink raw reply	[flat|nested] 4+ messages in thread

* Redirection - considerations
@ 2003-04-09 11:36 xchris
  0 siblings, 0 replies; 4+ messages in thread
From: xchris @ 2003-04-09 11:36 UTC (permalink / raw)
  To: netfilter

it think it's impossible! (keeping the source address... of course)

an example

A - Client starting connection
B - Server reached by A
C - Destination Server



A calls B
B sends packets to C with source address A
C tries to respond to A!!!
A doesn't know C (then drops packet)

am i right?



^ permalink raw reply	[flat|nested] 4+ messages in thread

* Re: Redirection - considerations
  2003-04-09 11:05 Redirection - considerations Christian Cernuschi
@ 2003-04-10 17:47 ` Eric Joe
  2003-04-10 17:58   ` xchris
  0 siblings, 1 reply; 4+ messages in thread
From: Eric Joe @ 2003-04-10 17:47 UTC (permalink / raw)
  To: Christian Cernuschi; +Cc: netfilter

On Wed, 9 Apr 2003, Christian Cernuschi wrote:

> it think it's impossible! (keeping the source address... of course)
> 
> an example
> 
> A - Client starting connection
> B - Server reached by A
> C - Destination Server
> 
> 
> 
> A calls B
> B sends packets to C with source address A
> C tries to respond to A!!! 
> A doesn't know C (then drops packet)
> 
> am i right?
> 

Didnt you already ask this question and got several answers from several 
people? It is *NOT* immpossible. See for yourself

http://www.tje1.com


The site you will arrive at is forwarded from the real www server


Eric





^ permalink raw reply	[flat|nested] 4+ messages in thread

* Re: Redirection - considerations
  2003-04-10 17:47 ` Eric Joe
@ 2003-04-10 17:58   ` xchris
  0 siblings, 0 replies; 4+ messages in thread
From: xchris @ 2003-04-10 17:58 UTC (permalink / raw)
  To: Eric Joe; +Cc: netfilter

----- Original Message -----
From: "Eric Joe" <sysop@ns2.tje1.com>



> Didnt you already ask this question and got several answers from several
> people? It is *NOT* immpossible. See for yourself
>
> http://www.tje1.com
>
>
> The site you will arrive at is forwarded from the real www server


I'm sorry i posted more than one time.It was a mistake.

I already realized that it's possible.
But it has few limits!

If i configure destination server with default gateway set to the first
server i keep source address.

If i leave it as is... i loose source address (with SNAT rule)

Thank you again and sorry for multiple posting.
Christian



^ permalink raw reply	[flat|nested] 4+ messages in thread

end of thread, other threads:[~2003-04-10 17:58 UTC | newest]

Thread overview: 4+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2003-04-09 11:05 Redirection - considerations Christian Cernuschi
2003-04-10 17:47 ` Eric Joe
2003-04-10 17:58   ` xchris
  -- strict thread matches above, loose matches on Subject: below --
2003-04-09 11:36 xchris

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox