Re: [patch v2.8 2/4] IPVS: make friends with nf_conntrack

To: Simon Horman <horms@xxxxxxxxxxxx>
Subject: Re: [patch v2.8 2/4] IPVS: make friends with nf_conntrack
Cc: lvs-devel@xxxxxxxxxxxxxxx, netdev@xxxxxxxxxxxxxxx, linux-kernel@xxxxxxxxxxxxxxx, netfilter@xxxxxxxxxxxxxxx, netfilter-devel@xxxxxxxxxxxxxxx, Malcolm Turnbull <malcolm@xxxxxxxxxxxxxxxx>, Mark Brooks <mark@xxxxxxxxxxxxxxxx>, Wensong Zhang <wensong@xxxxxxxxxxxx>, Julius Volz <julius.volz@xxxxxxxxx>, "David S. Miller" <davem@xxxxxxxxxxxxx>, Hannes Eder <heder@xxxxxxxxxx>, Jan Engelhardt <jengelh@xxxxxxxxxx>
From: Patrick McHardy <kaber@xxxxxxxxx>
Date: Fri, 23 Jul 2010 12:47:28 +0200
Am 22.07.2010 09:35, schrieb Simon Horman:
> Update the nf_conntrack tuple in reply direction, as we will see
> traffic from the real server (RIP) to the client (CIP).  Once this is
> done we can use netfilters SNAT in POSTROUTING, especially with
> xt_ipvs, to do source NAT, e.g.:
> % iptables -t nat -A POSTROUTING -m ipvs --vaddr --vport 80 
> \
>> > -j SNAT --to-source

Applied, thanks.
To unsubscribe from this list: send the line "unsubscribe lvs-devel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at

<Prev in Thread] Current Thread [Next in Thread>