Linux Netfilter discussions
 help / color / mirror / Atom feed
* DNAT hiding routers behind it
@ 2004-08-06 17:25 Simon Lodal
  2004-08-06 18:26 ` Dick St.Peters
  0 siblings, 1 reply; 8+ messages in thread
From: Simon Lodal @ 2004-08-06 17:25 UTC (permalink / raw)
  To: netfilter


I am traceroute'ing a DNAT'ed host. Surprisingly, all routers between 
the DNAT'ing firewall and the host appear as the IP address I am 
traceroute'ing. Is this intended? Can it be controlled in some way? (it 
is not necessarily bad)

Example:
traceroute to 217.116.235.62 (217.116.235.62), 30 hops max, 38 byte packets
  1  192.168.0.2 (192.168.0.2)  4.152 ms  0.875 ms  0.865 ms
  2  217.116.235.62 (217.116.235.62)  1.928 ms  1.272 ms  1.430 ms
  3  217.116.235.62 (217.116.235.62)  2.013 ms  2.338 ms  2.330 ms

Line 1: DNAT'ing firewall.
Line 2: A router.
Line 3: DNAT'ed host.

I would the expect the router to show up with it's own IP address, not 
the original target address.


Simon


^ permalink raw reply	[flat|nested] 8+ messages in thread

end of thread, other threads:[~2004-08-11 20:29 UTC | newest]

Thread overview: 8+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2004-08-06 17:25 DNAT hiding routers behind it Simon Lodal
2004-08-06 18:26 ` Dick St.Peters
2004-08-06 21:08   ` Simon Lodal
2004-08-06 22:56     ` Antony Stone
2004-08-07  2:51       ` Simon Lodal
2004-08-07  7:37         ` Antony Stone
2004-08-07 14:47           ` Simon Lodal
2004-08-11 20:29             ` Aleksandar Milivojevic

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox