Yes, I did go through that, what I don't understand is, if one to one (
private to public ) nat rule is added in nat file, why do we need an
additional rule to allow outside IP to send traffic to inside private IP,
won't the one to one rule take care of this.

Thanks,
Naveen


On Thu, Jan 10, 2019 at 4:55 PM Justin Pryzby <pry...@telsasoft.com> wrote:

> On Thu, Jan 10, 2019 at 04:31:51PM -0800, Naveen Neelakanta wrote:
> > How to achieve one to one NAT. I believe one to one Nat is equivalent of
> > having a snat and a matching reverse DNAT rule.
>
> If that's what you want, did you read this?
> http://shorewall.org/NAT.htm
>
> Justin
>
>
> _______________________________________________
> Shorewall-users mailing list
> Shorewall-users@lists.sourceforge.net
> https://lists.sourceforge.net/lists/listinfo/shorewall-users
>
_______________________________________________
Shorewall-users mailing list
Shorewall-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to