netfilter.vger.kernel.org archive mirror
 help / color / mirror / Atom feed
* question about NAT rule
@ 2010-06-22 14:20 Pete Kay
  2010-06-22 15:10 ` Pascal Hambourg
  0 siblings, 1 reply; 4+ messages in thread
From: Pete Kay @ 2010-06-22 14:20 UTC (permalink / raw)
  To: netfilter

Hi,

I have the following NAT rule set up :

udp      17 12 src=192.168.1.102 dst=192.168.1.140 sport=7390
dport=8000 packets=6 bytes=3258 [UNREPLIED] src=192.168.1.140
dst=192.168.1.102 sport=10000 dport=9000 packets=0 bytes=0 mark=0
secmark=0 use=2


What I am expecting to achieve is that when udp packets go from
192.168.1.102:7390 to 192.168.1.140:8000, the conntrack module would
redirect the packet to 192.168.1.102:9000, but it is not happening.

Does anyone know what is wrong?

From wireshark, I am seeing

100	11.732246	192.168.1.140	192.168.1.102	ICMP	Destination unreachable
(Port unreachable)


Any help will be greatly appreciated.

Thanks,
P

^ permalink raw reply	[flat|nested] 4+ messages in thread

end of thread, other threads:[~2010-06-28 17:42 UTC | newest]

Thread overview: 4+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2010-06-22 14:20 question about NAT rule Pete Kay
2010-06-22 15:10 ` Pascal Hambourg
2010-06-23  1:57   ` Pete Kay
2010-06-28 17:42     ` Anatoly Muliarski

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).