* checksum issue with xtables-addons RAWNAT
@ 2014-02-06 16:31 Randy Thornton
2014-02-21 9:51 ` Mart Frauenlob
0 siblings, 1 reply; 2+ messages in thread
From: Randy Thornton @ 2014-02-06 16:31 UTC (permalink / raw)
To: netfilter@vger.kernel.org
I'm trying to use RAWSNAT and RAWDNAT commands to route traffic through a proxy. It works correctly for IPV4 traffic, but fails on IPV6 traffic. The IP addresses are modified correctly, but the IP checksum is incorrect and the destination refuses the packets.
Command that redirects the outgoing packets:
ip6tables -t raw -A OUTPUT -p tcp -d fd00:192:168:200::100 --dport 80 -j RAWDNAT --to-destination fd00:172:168:0::11
I'm running xtables-addons-1.47.1 on Centos 6 with the latest kernel 2.6.32-431.3.1.el6.x86_64.
Has anyone used these commands successfully with IPV6 connections?
Has this been fixed in a later release of xtables-addons? If so, can anyone point me to the fix?
Randy Thornton
Circadence
randy@circadence.com
^ permalink raw reply [flat|nested] 2+ messages in thread
* Re: checksum issue with xtables-addons RAWNAT
2014-02-06 16:31 checksum issue with xtables-addons RAWNAT Randy Thornton
@ 2014-02-21 9:51 ` Mart Frauenlob
0 siblings, 0 replies; 2+ messages in thread
From: Mart Frauenlob @ 2014-02-21 9:51 UTC (permalink / raw)
To: Randy Thornton; +Cc: netfilter@vger.kernel.org
On 06.02.2014 17:31, Randy Thornton wrote:
>
> I'm trying to use RAWSNAT and RAWDNAT commands to route traffic through a proxy. It works correctly for IPV4 traffic, but fails on IPV6 traffic. The IP addresses are modified correctly, but the IP checksum is incorrect and the destination refuses the packets.
>
> Command that redirects the outgoing packets:
> ip6tables -t raw -A OUTPUT -p tcp -d fd00:192:168:200::100 --dport 80 -j RAWDNAT --to-destination fd00:172:168:0::11
>
> I'm running xtables-addons-1.47.1 on Centos 6 with the latest kernel 2.6.32-431.3.1.el6.x86_64.
>
> Has anyone used these commands successfully with IPV6 connections?
> Has this been fixed in a later release of xtables-addons? If so, can anyone point me to the fix?
Afaik, RAW[DS]NAT has been removed from latest xta.
Best regards
Mart
^ permalink raw reply [flat|nested] 2+ messages in thread
end of thread, other threads:[~2014-02-21 9:51 UTC | newest]
Thread overview: 2+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2014-02-06 16:31 checksum issue with xtables-addons RAWNAT Randy Thornton
2014-02-21 9:51 ` Mart Frauenlob
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).