From: Darryl Ross (spam_at_afoyi.com)
Date: Thu 09 Dec 2004 - 04:32:32 GMT
-----BEGIN PGP SIGNED MESSAGE-----
>> iptables -t nat -A POSTROUTING -s x.x.x.16/32 -j SNAT --to-source y.y.y.y
>> which packets do you expect it to match?
> Everything with a source address of the vserver. That rule is not the
> exact rule that I was using, but it is the simplest example of a rule
> that doesn't work as expected.
I have now tested this with a stock kernel using the same config as the
vserver patched kernel and the iptables rules match the packets as
expected. This leads me to believe it's specific to the vserver patched
Either over the weekend or early next week I'll build a lab to test this
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.3 (GNU/Linux)
-----END PGP SIGNATURE-----
Vserver mailing list