[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: Can't DNAT with iptables



Steven Pritchard wrote:
> On Tue, Mar 04, 2003 at 09:01:28AM -0600, Danny Sauer wrote:
> 
>>If INPUT and FORWARD are both set to default DROP, then they're probably 
>>being dropped at the INPUT table before they even get to the FORWARD 
>>table...
> 
> 
> Unlike ipchains, packets coming in to iptables go to *either* the
> INPUT or the FORWARD chain, not both.

So it does...
http://www.netfilter.org/documentation/HOWTO//netfilter-hacking-HOWTO-3.html#ss3.2

Huh.

--Danny, reading the documentation *before* posting next time


-
To unsubscribe, send email to majordomo@luci.org with
"unsubscribe luci-discuss" in the body.