Linux Netfilter discussions
 help / color / mirror / Atom feed
* [IPTABLES] Symmetric NAT ?
@ 2005-10-18  7:07 Olivier GRALL
  0 siblings, 0 replies; only message in thread
From: Olivier GRALL @ 2005-10-18  7:07 UTC (permalink / raw)
  To: netfilter

Hi,

I was making some tests with STUN when I realize that my NAT box was a 
simple Linux Box with an IPTABLES rule with a MASQ target. What seemed 
strange to me was that the STUN result was "Port restricted cone ".

I made a new with NATcheck.exe... same result.
http://midcom-p2p.sourceforge.net/

I was sure IPTABLES NAT was Symmetric and not Port restricted cone. What 
about it ?
In the "Procceding of NetFilter Developer WorkShop 2004",  Harald Welte 
reported "

netfilter however implements (SNAT and MASQ) as ssymmetric.
"


For me, with MASQ it is Port restricted cone and with SNAT+DNAT it is 
Symmetric. Is it true ?

Thanx,
-- 

	
Olivier GRALL
R&D Engineer 	*NeoTIP** S.A.*
4, rue Louis de Broglie
22300 Lannion
France
olivier.grall@neotip.com <mailto:olivier.grall@neotip.com> 	+33 (0)2 96 
48 66 94



^ permalink raw reply	[flat|nested] only message in thread

only message in thread, other threads:[~2005-10-18  7:07 UTC | newest]

Thread overview: (only message) (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2005-10-18  7:07 [IPTABLES] Symmetric NAT ? Olivier GRALL

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox