* Re: [gentoo-user] IPtables question
@ 2007-02-02 9:54 99% ` Hans-Werner Hilse
0 siblings, 0 replies; 1+ results
From: Hans-Werner Hilse @ 2007-02-02 9:54 UTC (permalink / raw
To: gentoo-user
Hi,
On Fri, 2 Feb 2007 09:45:53 +0100 Pawel Kraszewski
<Gentoo@kraszewscy.net> wrote:
> Dnia środa, 31 stycznia 2007, James Colby napisał:
>
> > I have a small home server that I have connected to the internet
> > through a linksys router and cable modem. The linksys router is
> > currently forwarding all ssh traffic to my gentoo box. What I would
> ^^^^^^^^^
>
> Take note, that forwarded traffic (it is DNAT-ed in Linksys) would
> appear on your host as originating from your router. Original source
> address is stripped by router's NAT.
Nope, just the target Adress is rewritten (by routing). DNAT is
Destination NAT! I.e. the target IP of the packet is rewritten. Since
the Linksys is the default gateway, packets can keep their source IP
address. Of course, the source MAC address will be rewritten to the
router's -- but that's got nothing to do with NAT but routing instead.
-hwh
--
gentoo-user@gentoo.org mailing list
^ permalink raw reply [relevance 99%]
Results 1-1 of 1 | reverse | options above
-- pct% links below jump to the message on this page, permalinks otherwise --
2007-01-31 20:36 [gentoo-user] IPtables question James Colby
2007-02-02 8:45 ` Pawel Kraszewski
2007-02-02 9:54 99% ` Hans-Werner Hilse
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox