Re: [Ebtables-user] brouting on interfaces without IP address
Carl-Daniel Hailfinger <[email protected]>
| Newsgroups | gmane.linux.network.routing,gmane.linux.network.bridge.ebtables.user |
|---|---|
| Message-ID | <[email protected]> |
Bart De Schuymer schrieb: > Op do, 13-10-2005 te 23:55 +0200, schreef Carl-Daniel Hailfinger: > >> However, once I insert the ebtables rule to actually do the >> redirection, all packets I want to redirect get dropped. This >> happens regardless of where I try to broute the packets. I tried >> DROPping them in BROUTING, REDIRECTing them in PREROUTING, DNATing >> them to the MAC of eth0 in PREROUTING, but each time the packets >> never leave eth0. >> [...] >> bridge:~ # ebtables -t nat -L --Lx >> ebtables -t nat -N ifacefilter-int ebtables -t nat -N proxy >> ebtables -t nat -A PREROUTING -i bridgeint -j ifacefilter-int >> ebtables -t nat -A ifacefilter-int -p IPv4 --ip-src 192.168.0.0/24 >> --ip-proto tcp --ip-dport 80 -j proxy >> ebtables -t nat -A proxy -j mark --set-mark 0x1 --mark-target >> CONTINUE > >> ebtables -t nat -A proxy -j dnat --to-dst 00:11:22:33:44:55 >> --dnat-target ACCEPT > > > Make this 00:01:02:03:04:05, or just use -j redirect Sorry if I was unclear, but -j redirect doesn't work. Same for --to-dst 00:01:02:03:04:05. That's why I tried to use the MAC of eth0 in --to-dst. Regards, Carl-Daniel